2 results (0.001 seconds)

CVSS: 9.3EPSS: 0%CPEs: 21EXPL: 0

17 May 2023 — An internally discovered vulnerability in PowerVM on IBM Power9 and Power10 systems could allow an attacker with privileged user access to a logical partition to perform an undetected violation of the isolation between logical partitions which could lead to data leakage or the execution of arbitrary code in other logical partitions on the same physical server. IBM X-Force ID: 252706. • https://exchange.xforce.ibmcloud.com/vulnerabilities/252706 •

CVSS: 6.9EPSS: 0%CPEs: 22EXPL: 0

21 Mar 2019 — The IBM Power 9 OP910, OP920, and FW910 boot firmware's bootloader is responsible for loading and validating the initial boot firmware image that drives the rest of the system's hardware initialization. The bootloader firmware contains a buffer overflow vulnerability such that, if an attacker were able to replace the initial boot firmware image with a very carefully crafted and sufficiently large, malicious replacement, it could cause the bootloader, during the load of that image, to overwrite its own instr... • https://exchange.xforce.ibmcloud.com/vulnerabilities/154345 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •