CVE-2026-17042: IBM Power Hardware Management Console (7063-CR2) Firmware

High severity, CVSS 7.3. EPSS: 0.1% chance of exploitation in the next 30 days.

IBM Power Systems Firmware FW950.00 through FW950.H2, OP940.00 through OP940.a1 (Power9), and OP940.00 - OP940.81 (Power HMC) is affected by a vulnerability in host firmware NVRAM parsing. An attacker with root access to a guest partition on an OpenPOWER system can write a specially crafted NVRAM image, causing the host firmware boot stage to crash with possible memory corruption. This condition persists until operator intervention — clearing NVRAM via the service processor — to restore normal operation. This vulnerability only affects OpenPOWER systems; systems running PowerVM are not affected. Successful exploitation results in an integrity and availability impact to the managed system.

Affected products

  • IBM Power Hardware Management Console (7063-CR2) Firmware: from op940, before op940.82 (fixed in op940.82)
  • IBM Power System AC922 (8335-Gth) Firmware: from op940, before op940.a2 (fixed in op940.a2)
  • IBM Power System AC922 (8335-Gtx) Firmware: from op940, before op940.a2 (fixed in op940.a2)
  • IBM Power System e950 (9040-MR9) Firmware: from fw950.00, before fw950.h3 (fixed in fw950.h3)
  • IBM Power System e980 (9080-m9s) Firmware: from fw950.00, before fw950.h3 (fixed in fw950.h3)
  • IBM Power System h922 (9223-22s) Firmware: from fw950.00, before fw950.h3 (fixed in fw950.h3)
  • IBM Power System h924 (9223-42s) Firmware: from fw950.00, before fw950.h3 (fixed in fw950.h3)
  • IBM Power System s914 (9009-41g) Firmware: from fw950.00, before fw950.h3 (fixed in fw950.h3)
  • IBM Power System s922 (9009-22g) Firmware: from fw950.00, before fw950.h3 (fixed in fw950.h3)
  • IBM Power System s924 (9009-42g) Firmware: from fw950.00, before fw950.h3 (fixed in fw950.h3)

Published 2026-08-19. Last modified 2026-08-25.