CVE-2026-17413: CWE-129 Improper Validation of Array Index in IBM PowerVM Hypervisor
IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the RTAS firmware-to-OS interface. An attacker with administrator-level (root) access to a logical partition can send a specially crafted request to partition firmware, causing the partition to crash and become unavailable. Other partitions on the same managed system are not affected.
AI Analysis
Technical Summary
IBM PowerVM Hypervisor versions FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 contain an improper validation of array index vulnerability (CWE-129) in the RTAS firmware-to-OS interface. This flaw allows an attacker with root access to a logical partition to send a specially crafted request to the partition firmware, resulting in a crash and unavailability of that partition. The vulnerability does not affect other partitions on the same managed system.
Potential Impact
The vulnerability allows a local attacker with administrator (root) privileges on a logical partition to cause a denial of service by crashing that partition. There is no impact on confidentiality or integrity, and other partitions on the same system remain unaffected.
Mitigation Recommendations
No patch or remediation information is currently provided. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, restrict administrator-level access to logical partitions to trusted users only to mitigate risk.
CVE-2026-17413: CWE-129 Improper Validation of Array Index in IBM PowerVM Hypervisor
Description
IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the RTAS firmware-to-OS interface. An attacker with administrator-level (root) access to a logical partition can send a specially crafted request to partition firmware, causing the partition to crash and become unavailable. Other partitions on the same managed system are not affected.
CVSS v3.1
Score 5.1medium
Affected software
IBM
PowerVM Hypervisor
cpe:2.3:a:ibm:powervm_hypervisor:fw1120.00:*:*:*:*:*:*:*cpe:2.3:a:ibm:powervm_hypervisor:fw1120.00.0:*:*:*:*:*:*:*cpe:2.3:a:ibm:powervm_hypervisor:fw1120.01:*:*:*:*:*:*:*cpe:2.3:a:ibm:powervm_hypervisor:fw1120.01.0:*:*:*:*:*:*:*cpe:2.3:a:ibm:powervm_hypervisor:fw1110.00:*:*:*:*:*:*:*cpe:2.3:a:ibm:powervm_hypervisor:fw1110.00.0:*:*:*:*:*:*:*Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
IBM PowerVM Hypervisor versions FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 contain an improper validation of array index vulnerability (CWE-129) in the RTAS firmware-to-OS interface. This flaw allows an attacker with root access to a logical partition to send a specially crafted request to the partition firmware, resulting in a crash and unavailability of that partition. The vulnerability does not affect other partitions on the same managed system.
Potential Impact
The vulnerability allows a local attacker with administrator (root) privileges on a logical partition to cause a denial of service by crashing that partition. There is no impact on confidentiality or integrity, and other partitions on the same system remain unaffected.
Mitigation Recommendations
No patch or remediation information is currently provided. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, restrict administrator-level access to logical partitions to trusted users only to mitigate risk.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- ibm
- Date Reserved
- 2026-07-25T05:27:01.303Z
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 6ab53135f7a7c541066a02fc
Added to database: 09/24/2026, 14:18:29 UTC
Last enriched: 09/24/2026, 14:33:19 UTC
Last updated: 09/25/2026, 02:48:29 UTC
Views: 7
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.