CVE-2023-25683: IBM PowerVM Hypervisor information disclosure
IBM PowerVM Hypervisor could allow an attacker to obtain sensitive information if they gain service access to the HMC.
Other sources
IBM PowerVM Hypervisor FW950.00 through FW950.71, FW1010.00 through FW1010.40, FW1020.00 through FW1020.20, and FW1030.00 through FW1030.11 could allow an attacker to obtain sensitive information if they gain service access to the HMC. IBM X-Force ID: 247592.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-25683?
CVE-2023-25683 is classified as a moderate severity vulnerability.
How do I fix CVE-2023-25683?
To fix CVE-2023-25683, update the IBM PowerVM Hypervisor to the latest firmware version, ensuring you move beyond the vulnerable versions listed.
Who is affected by CVE-2023-25683?
CVE-2023-25683 affects users of IBM PowerVM Hypervisor versions FW950.00 through FW950.71, FW1010.00 through FW1010.40, FW1020.00 through FW1020.20, and FW1030.00 through FW1030.11.
What kind of information can be exposed by CVE-2023-25683?
CVE-2023-25683 could allow an attacker to obtain sensitive information if they gain service access to the HMC.
What platforms are impacted by CVE-2023-25683?
CVE-2023-25683 impacts various firmware versions of IBM PowerVM Hypervisor deployed on Power Systems.