{ "dataType": "CVE_RECORD", "dataVersion": "5.2", "cveMetadata": { "cveId": "CVE-2026-93306", "assignerOrgId": "9a959283-ebb5-44b6-b705-dcc2bbced522", "state": "PUBLISHED", "assignerShortName": "ibm", "dateReserved": "2026-09-17T17:01:08.321Z", "datePublished": "2026-09-25T14:21:42.440Z", "dateUpdated": "2026-09-25T14:21:42.440Z" }, "containers": { "cna": { "providerMetadata": { "orgId": "9a959283-ebb5-44b6-b705-dcc2bbced522", "shortName": "ibm", "dateUpdated": "2026-09-25T14:21:42.440Z" }, "title": "This Power System update is being released to address", "problemTypes": [ { "descriptions": [ { "lang": "en", "cweId": "CWE-125", "description": "CWE-125 Out-of-bounds Read", "type": "CWE" } ] } ], "affected": [ { "vendor": "IBM", "product": "Server Firmware", "versions": [ { "status": "affected", "version": "FW1120.00", "lessThanOrEqual": "FW1120.01", "versionType": "custom" }, { "status": "affected", "version": "FW1110.00", "lessThanOrEqual": "FW1110.31", "versionType": "custom" }, { "status": "affected", "version": "FW1060.00", "lessThanOrEqual": "FW1060.81", "versionType": "custom" }, { "status": "affected", "version": "FW950.00", "lessThanOrEqual": "FW950.H3", "versionType": "custom" } ], "cpes": [ "cpe:2.3:a:ibm:server_firmware:fw1120.00:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1120.00.0:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1120.01:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1120.01.0:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1110.00:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1110.00.0:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1110.31:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1110.31.0:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1060.00:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1060.00.0:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1060.81:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw1060.81.0:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw950.00:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw950.00.0:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw950.h3:*:*:*:*:*:*:*", "cpe:2.3:a:ibm:server_firmware:fw950.h3.0:*:*:*:*:*:*:*" ] } ], "descriptions": [ { "lang": "en", "value": "IBM Server Firmware FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the ASMI web interface. An unauthenticated attacker on the management network can send a malformed HTTPS request to ASMI, causing the web server to crash with possible memory corruption and generate an error log. The ASMI web interface will restart automatically; however, repeated exploitation could result in a sustained loss of access to the ASMI management interface, resulting in an integrity and availability impact.", "supportingMedia": [ { "type": "text/html", "base64": false, "value": "

IBM Server Firmware FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the ASMI web interface. An unauthenticated attacker on the management network can send a malformed HTTPS request to ASMI, causing the web server to crash with possible memory corruption and generate an error log. The ASMI web interface will restart automatically; however, repeated exploitation could result in a sustained loss of access to the ASMI management interface, resulting in an integrity and availability impact.

" } ] } ], "references": [ { "url": "https://www.ibm.com/support/pages/node/7289331", "tags": [ "vendor-advisory", "patch" ] } ], "metrics": [ { "format": "CVSS", "scenarios": [ { "lang": "en", "value": "GENERAL" } ], "cvssV3_1": { "version": "3.1", "attackVector": "ADJACENT_NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "NONE", "integrityImpact": "LOW", "availabilityImpact": "HIGH", "baseSeverity": "HIGH", "baseScore": 7.1, "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H" } } ], "workarounds": [ { "lang": "en", "value": "Protect access to the network interface by operating it on a private network or behind a firewall.", "supportingMedia": [ { "type": "text/html", "base64": false, "value": "

Protect access to the network interface by operating it on a private network or behind a firewall.

" } ] } ], "solutions": [ { "lang": "en", "value": "Customers with the products below should install FW1120.02(1120_171), FW1110.32(1110_138) or newer to remediate this vulnerability.\n\n\n\nPower 11\n1) IBM Power System E1180 (9080-HEU)\n\n\n\nCustomers with the products below should install FW1060.82(1060_189) or newer to remediate this vulnerability.\n\n\n\nPower 10\n1) IBM Power System E1080 (9080-HEX)\n\n\n\nCustomers with the products below should install FW950.H4(950_236) or newer to remediate this vulnerability.\n\n\n\nPower 9\n1) IBM Power System S922 (9009-22G)\n2) IBM Power System H922 (9223-22S)\n3) IBM Power System S914 (9009-41G)\n4) IBM Power System S924 (9009-42G)\n5) IBM Power System H924 (9223-42S)\n6) IBM Power System E950 (9040-MR9)\n7) IBM Power System E980 (9080-M9S)\n\n\n\nThe images mentioned above can be located at IBM Fix Central : https://www.ibm.com/support/fixcentral/", "supportingMedia": [ { "type": "text/html", "base64": false, "value": "

Customers with the products below should install FW1120.02(1120_171), FW1110.32(1110_138) or newer to remediate this vulnerability.

Power 11
1) IBM Power System E1180 (9080-HEU)

Customers with the products below should install FW1060.82(1060_189) or newer to remediate this vulnerability.

Power 10
1) IBM Power System E1080 (9080-HEX)

Customers with the products below should install FW950.H4(950_236) or newer to remediate this vulnerability.

Power 9
1) IBM Power System S922 (9009-22G)
2) IBM Power System H922 (9223-22S)
3) IBM Power System S914 (9009-41G)
4) IBM Power System S924 (9009-42G)
5) IBM Power System H924 (9223-42S)
6) IBM Power System E950 (9040-MR9)
7) IBM Power System E980 (9080-M9S)

The images mentioned above can be located at IBM Fix Central : https://www.ibm.com/support/fixcentral/

" } ] } ] } } }