PT-2026-78431 · Ibm · Ibm Powervm Hypervisor
CVE-2026-15961
·
Published
2026-08-19
·
Updated
2026-08-20
CVSS v3.1
6.0
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
IBM PowerVM Hypervisor version FW1120.00
IBM PowerVM Hypervisor versions FW1110.00 through FW1110.30
IBM PowerVM Hypervisor versions FW1060.00 through FW1060.80
Description
Improper control of format strings may allow a local attacker to obtain sensitive information or cause a denial of service. Format strings are templates used to format output, and improper control occurs when user-supplied input is evaluated as part of the format string, potentially leading to memory corruption or unauthorized data access.
Recommendations
Update IBM PowerVM Hypervisor version FW1120.00 to the latest released Power System update.
Update IBM PowerVM Hypervisor versions FW1110.00 through FW1110.30 to the latest released Power System update.
Update IBM PowerVM Hypervisor versions FW1060.00 through FW1060.80 to the latest released Power System update.
Fix
DoS
Use of Externally-Controlled Format String
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Powervm Hypervisor