CVE-2026-17028
Received Received - Intake

iSCSI SAN Network Boot Denial of Service in IBM PowerVM Hypervisor

Vulnerability report for CVE-2026-17028, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-19

Last updated on: 2026-08-19

Assigner: IBM Corporation

Description

IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in partition firmware during network boot. An unauthenticated attacker with access to the same network as a partition undergoing iSCSI SAN network boot can prevent that partition from completing its boot sequence. Other partitions and the managed system are not affected. Only partitions actively performing an iSCSI SAN network boot are affected, resulting in an availability impact.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-19
Last Modified
2026-08-19
Generated
2026-08-20
AI Q&A
2026-08-20
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 5 associated CPEs
Vendor Product Version / Range
ibm powervm_hypervisor From FW1110.00 (inc) to FW950.H2 (inc)
ibm powervm_hypervisor fw1120.00
ibm powervm_hypervisor to fw1110.30 (inc)
ibm powervm_hypervisor to fw1060.80 (inc)
ibm powervm_hypervisor to fw950.h2 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-125 The product reads data past the end, or before the beginning, of the intended buffer.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability affects IBM PowerVM Hypervisor firmware versions FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2. It involves an out-of-bounds read issue during network boot when a partition uses iSCSI SAN network boot. An unauthenticated attacker on the same network can disrupt the boot sequence, preventing the partition from completing startup.

Detection Guidance

Detecting this vulnerability requires monitoring network boot processes for partitions using iSCSI SAN. Check firmware versions against affected releases (FW1120.00, FW1110.00-FW1110.30, FW1060.00-FW1060.80, FW950.00-FW950.H2). Use system logs to identify failed network boot attempts during iSCSI SAN operations.

Impact Analysis

The impact is limited to partitions actively performing an iSCSI SAN network boot. The affected partition will fail to complete its boot sequence, resulting in an availability issue. Other partitions and the managed system remain unaffected. Exploitation requires network access but no authentication.

Mitigation Strategies

Update firmware to patched versions immediately: FW1110.31, FW1120.01, FW1060.81, or FW950.H3 depending on your system model. Avoid iSCSI SAN network boot until updated. Isolate affected partitions from untrusted networks during boot.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-17028. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart