#PowerVM
Finally got ALL my i5/OS toys up and running!
October 5, 2025 at 6:54 AM
🚨 EUVD-2026-85889
📊 5.1/10
🏢 IBM

📝 IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a v...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-85889

#cybersecurity #infosec #cve #euvd
September 24, 2026 at 3:01 PM
🚨 EUVD-2026-86007
📊 3.2/10
🏢 IBM

📝 IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, and FW1060.00 through FW1060.81 is affected by a vulnerability in a hyperviso...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-86007

#cybersecurity #infosec #cve #euvd
September 24, 2026 at 4:05 PM
🚨 EUVD-2026-85890
📊 5.1/10
🏢 IBM

📝 IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a v...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-85890

#cybersecurity #infosec #cve #euvd
September 24, 2026 at 3:01 PM
IBMの「AIX」「PowerVM VIOS」に多数脆弱性 - 修正版を提供

IBMのUNIX OS「AIX」と仮想I/Oサーバ「PowerVM VIOS」に多数の脆弱性が判明した。深刻な脆弱性も含まれており、同社は脆弱性に対処したアップデートを提供している。

...

なかでも低い権限でリモートからコマンドの実行が可能となるOSコマンドインジェクションの脆弱性「CVE-2026-18835」「CVE-2026-16816」「CVE-2026-15068」については、いずれも「9.9」と高い。さらに23件が「9.8」で続いている。
【セキュリティ ニュース】IBMの「AIX」「PowerVM VIOS」に多数脆弱性 - 修正版を提供(1ページ目 / 全1ページ):Security NEXT
IBMのUNIX OS「AIX」と仮想I/Oサーバ「PowerVM VIOS」に多数の脆弱性が判明した。深刻な脆弱性も含まれており、同社は脆弱性に対処したアップデートを提供している。 :Security NEXT
www.security-next.com
September 24, 2026 at 12:48 AM
🚨 EUVD-2026-86006
📊 4.3/10
🏢 IBM

📝 IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 could allow a remo...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-86006

#cybersecurity #infosec #cve #euvd
September 24, 2026 at 4:04 PM
🚨 EUVD-2026-85888
📊 5.1/10
🏢 IBM

📝 IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a v...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-85888

#cybersecurity #infosec #cve #euvd
September 24, 2026 at 3:01 PM
🚨 EUVD-2026-85891
📊 3.4/10
🏢 IBM

📝 IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a v...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-85891

#cybersecurity #infosec #cve #euvd
September 24, 2026 at 3:01 PM
CVE-2026-16872 - Vulnerabilities in IBM AIX and PowerVM VIOS
CVE ID : CVE-2026-16872

Published : Aug. 19, 2026, 7:40 p.m. | 9 minutes ago

Description : IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack-ba...
CVE-2026-16872 - Vulnerabilities in IBM AIX and PowerVM VIOS
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack-based buffer overflow.
cvefeed.io
August 19, 2026 at 8:19 PM
📌 CVE-2026-16656 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to gain root privileges due to improper authentication. https://www.cyberhub.blog/cves/CVE-2026-16656
CVE-2026-16656
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to gain root privileges due to improper authentication.
www.cyberhub.blog
August 21, 2026 at 11:37 AM
⚠️ Urgent! Power9 & Power10 users, a critical security vulnerability (CVE 2023-30438) has been found in PowerVM hypervisor. Risk of data leakage & arbitrary code execution! https://www.itjungle.com/2023/05/22/critical-security-vulnerability-in-powervm-hypervisor/
May 22, 2023 at 12:10 PM
📌 CVE-2026-16885 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow. https://www.cyberhub.blog/cves/CVE-2026-16885
CVE-2026-16885
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow.
www.cyberhub.blog
August 21, 2026 at 10:37 AM
📌 CVE-2026-16872 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack-based buffer overflow. https://www.cyberhub.blog/cves/CVE-2026-16872
CVE-2026-16872
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack-based buffer overflow.
www.cyberhub.blog
August 21, 2026 at 11:07 AM
📌 CVE-2026-15068 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attacker to execute arbitrary commands due to improper neutraliza... https://www.cyberhub.blog/cves/CVE-2026-15068
CVE-2026-15068
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
www.cyberhub.blog
August 21, 2026 at 4:07 AM
📌 CVE-2026-18670 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service and potentially disclose sensitive informatio... https://www.cyberhub.blog/cves/CVE-2026-18670
CVE-2026-18670
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service and potentially disclose sensitive information due to an integer underflow.
www.cyberhub.blog
August 28, 2026 at 1:07 PM
📌 CVE-2026-16816 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization... https://www.cyberhub.blog/cves/CVE-2026-16816
CVE-2026-16816
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
www.cyberhub.blog
August 21, 2026 at 3:37 AM
📌 CVE-2026-15065 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to bypass security restrictions due to the exposure of intermediate ce... https://www.cyberhub.blog/cves/CVE-2026-15065
CVE-2026-15065
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to bypass security restrictions due to the exposure of intermediate certificate authority private keys in a publicly available update file.
www.cyberhub.blog
August 21, 2026 at 8:07 PM
Also provide an option to run without PR/SM (or PowerVM when on Power), even if it's harder to use.

There's no great reason for not being able to run z/OS or z/VM on KVM as bare metal - as a documented option imo.

And IBM ought to make perhaps older versions of their stuff more accessible - […]
Original post on mastodon.social
mastodon.social
September 4, 2026 at 7:47 PM
📌 CVE-2026-16848 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to improper neutralization of shell meta... https://www.cyberhub.blog/cves/CVE-2026-16848
CVE-2026-16848
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to improper neutralization of shell metacharacters in DHCP options.
www.cyberhub.blog
August 31, 2026 at 5:37 AM
📌 CVE-2026-17000 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to improper authentication. https://www.cyberhub.blog/cves/CVE-2026-17000
CVE-2026-17000
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to improper authentication.
www.cyberhub.blog
August 29, 2026 at 7:43 AM
📌 CVE-2026-17414 - IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 Power Systems Firmware is af... https://www.cyberhub.blog/cves/CVE-2026-17414
CVE-2026-17414
IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 Power Systems Firmware is affected by a vulnerability in partition firmware during network boot. An unauthenticated attacker with access to the same network as a partition perfor
www.cyberhub.blog
August 29, 2026 at 8:37 AM
📌 CVE-2026-19437 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a buffer overflow. https://www.cyberhub.blog/cves/CVE-2026-19437
CVE-2026-19437
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a buffer overflow.
www.cyberhub.blog
August 29, 2026 at 5:07 AM
📌 CVE-2026-17138 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack-based buffer overflow. https://www.cyberhub.blog/cves/CVE-2026-17138
CVE-2026-17138
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack-based buffer overflow.
www.cyberhub.blog
August 29, 2026 at 5:37 AM
📌 CVE-2026-17060 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to obtain sensitive information and cause a denial of service due to a ker... https://www.cyberhub.blog/cves/CVE-2026-17060
CVE-2026-17060
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to obtain sensitive information and cause a denial of service due to a kernel heap over-read.
www.cyberhub.blog
August 29, 2026 at 6:07 AM
📌 CVE-2026-16857 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to manipulate network traffic and DNS configuration due to improper authen... https://www.cyberhub.blog/cves/CVE-2026-16857
CVE-2026-16857
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to manipulate network traffic and DNS configuration due to improper authentication.
www.cyberhub.blog
August 28, 2026 at 3:07 PM