← Back

CVE-2024-41781

nvd nist
Published: Nov 22, 2024Modified: Jun 17, 2026

JSON object

Loading...
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.2 / Impact: 3.6
Source: NVD

Description

IBM PowerVM Platform KeyStore (IBM PowerVM Hypervisor FW950.00 through FW950.90, FW1030.00 through FW1030.60, FW1050.00 through FW1050.20, and FW1060.00 through FW1060.10 functionality can be compromised if an attacker gains service access to the HMC. An attacker that gains service access to the HMC can locate and through a series of service procedures decrypt data contained in the Platform KeyStore.

Affected (4)

1 product
Powervm Hypervisor
Configuration A
4 vulnerable · 8 platform
Vulnerable SoftwareAffected Versions
Ibm
From fw1030.00 to fw1030.60
From fw1050.00 to fw1050.20
From fw1060.00 to fw1060.10
From fw950.00 to fw950.b0
Running on/withPlatform Versions
Ibm
Power System E950
All versions
Ibm
Power System E980
All versions
Ibm
Power System H922
All versions
Ibm
Power System H924
All versions
Ibm
Power System L922
All versions
Ibm
Power System S914
All versions
Ibm
Power System S922
All versions
Ibm
Power System S924
All versions

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.