Filtered by vendor Ibm
Subscribe
Total
8803 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-18670 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 8.2 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service and potentially disclose sensitive information due to an integer underflow. | |||||
| CVE-2026-17436 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 8.8 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a heap-based buffer overflow. | |||||
| CVE-2026-17425 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 7.5 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to a stack buffer overflow. | |||||
| CVE-2026-17424 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 4.8 MEDIUM |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to bypass security restrictions due to improper limitation of a pathname to a restricted directory. | |||||
| CVE-2026-17423 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 7.7 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to obtain sensitive information and cause a denial of service due to an out-of-bounds read. | |||||
| CVE-2026-17422 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 9.3 CRITICAL |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary code due to a buffer overflow. | |||||
| CVE-2026-17195 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 6.5 MEDIUM |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to cause a denial of service due to an out-of-bounds write. | |||||
| CVE-2026-17170 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 7.5 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to improper validation of an allocation size. | |||||
| CVE-2026-17168 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 8.5 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to execute arbitrary code due to a stack-based buffer overflow. | |||||
| CVE-2026-17165 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 7.5 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to a NULL pointer dereference. | |||||
| CVE-2026-17159 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 7.5 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to an integer overflow. | |||||
| CVE-2026-17160 | 1 Ibm | 2 Aix, Vios | 2026-08-25 | N/A | 9.8 CRITICAL |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to an integer overflow during size computation. | |||||
| CVE-2026-17042 | 1 Ibm | 20 Power Hardware Management Console \(7063-cr2\), Power Hardware Management Console \(7063-cr2\) Firmware, Power System Ac922 \(8335-gth\) and 17 more | 2026-08-25 | N/A | 7.3 HIGH |
| IBM Power Systems Firmware FW950.00 through FW950.H2, OP940.00 through OP940.a1 (Power9), and OP940.00 - OP940.81 (Power HMC) is affected by a vulnerability in host firmware NVRAM parsing. An attacker with root access to a guest partition on an OpenPOWER system can write a specially crafted NVRAM image, causing the host firmware boot stage to crash with possible memory corruption. This condition persists until operator intervention — clearing NVRAM via the service processor — to restore normal operation. This vulnerability only affects OpenPOWER systems; systems running PowerVM are not affected. Successful exploitation results in an integrity and availability impact to the managed system. | |||||
| CVE-2026-17468 | 1 Ibm | 1 Documentation Offline | 2026-08-25 | N/A | 5.3 MEDIUM |
| IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to forge valid session tokens due to the use of a hardcoded cryptographic key. | |||||
| CVE-2026-17473 | 1 Ibm | 1 Documentation Offline | 2026-08-25 | N/A | 7.5 HIGH |
| IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to read arbitrary files due to improper limitation of a pathname to a restricted directory. | |||||
| CVE-2026-17063 | 1 Ibm | 38 Power System E1050 \(9043-mrx\), Power System E1050 \(9043-mrx\) Firmware, Power System E1080 \(9080-hex\) and 35 more | 2026-08-25 | N/A | 7.9 HIGH |
| IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in the interface between the BMC/FSP and the host system. An attacker with service account or root access to the BMC/FSP can access and disrupt host processor state, potentially affecting the managed system and all hosted partitions, resulting in an confidentiality, and availability impact. | |||||
| CVE-2026-16922 | 1 Ibm | 2 Aix, Vios | 2026-08-24 | N/A | 7.0 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary code due to a time-of-check to time-of-use (TOCTOU) race condition. | |||||
| CVE-2026-16923 | 1 Ibm | 2 Aix, Vios | 2026-08-24 | N/A | 7.0 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated privileges due to improper privilege management. | |||||
| CVE-2026-16924 | 1 Ibm | 2 Aix, Vios | 2026-08-24 | N/A | 7.5 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to an improper calculation of a memory offset during IPsec decapsulation. | |||||
| CVE-2026-16925 | 1 Ibm | 2 Aix, Vios | 2026-08-24 | N/A | 7.1 HIGH |
| IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to achieve privilege escalation due to improper authorization. | |||||
