CVE-2025-36194
Unknown
Unknown - Not Provided
Information Disclosure in IBM PowerVM Hypervisor Shared Processor Configurations
Publication date: 2026-02-02
Last updated on: 2026-02-19
Assigner: IBM Corporation
Description
Description
IBM PowerVM Hypervisor FW1110.00 through FW1110.03, FW1060.00 through FW1060.51, and FW950.00 through FW950.F0 may expose a limited amount of data to a peer partition in specific shared processor configurations during certain operations.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| ibm | powervm_hypervisor | fw1060.00 |
| ibm | powervm_hypervisor | fw1060.10 |
| ibm | powervm_hypervisor | fw1060.12 |
| ibm | powervm_hypervisor | fw1060.20 |
| ibm | powervm_hypervisor | fw1060.21 |
| ibm | powervm_hypervisor | fw1060.40 |
| ibm | powervm_hypervisor | fw1060.41 |
| ibm | powervm_hypervisor | fw1060.50 |
| ibm | powervm_hypervisor | fw1060.51 |
| ibm | powervm_hypervisor | fw1110.00 |
| ibm | powervm_hypervisor | fw1110.01 |
| ibm | powervm_hypervisor | fw1110.03 |
| ibm | powervm_hypervisor | fw950.00 |
| ibm | powervm_hypervisor | fw950.10 |
| ibm | powervm_hypervisor | fw950.11 |
| ibm | powervm_hypervisor | fw950.20 |
| ibm | powervm_hypervisor | fw950.30 |
| ibm | powervm_hypervisor | fw950.40 |
| ibm | powervm_hypervisor | fw950.50 |
| ibm | powervm_hypervisor | fw950.60 |
| ibm | powervm_hypervisor | fw950.70 |
| ibm | powervm_hypervisor | fw950.71 |
| ibm | powervm_hypervisor | fw950.80 |
| ibm | powervm_hypervisor | fw950.90 |
| ibm | powervm_hypervisor | fw950.a0 |
| ibm | powervm_hypervisor | fw950.b0 |
| ibm | powervm_hypervisor | fw950.c0 |
| ibm | powervm_hypervisor | fw950.c1 |
| ibm | powervm_hypervisor | fw950.c2 |
| ibm | powervm_hypervisor | fw950.d0 |
| ibm | powervm_hypervisor | fw950.d1 |
| ibm | powervm_hypervisor | fw950.e0 |
| ibm | powervm_hypervisor | fw950.e1 |
| ibm | powervm_hypervisor | fw950.f0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-1262 | The product uses memory-mapped I/O registers that act as an interface to hardware functionality from software, but there is improper access control to those registers. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability in IBM PowerVM Hypervisor versions FW1110.00 through FW1110.03, FW1060.00 through FW1060.51, and FW950.00 through FW950.F0 may allow a limited amount of data to be exposed to a peer partition when using specific shared processor configurations during certain operations.
How can this vulnerability impact me? :
The vulnerability could lead to unintended data exposure between peer partitions in a shared processor environment, potentially compromising confidentiality of some data.
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70