CVE-2025-36035: IBM PowerVM Hypervisor denial of service
IBM PowerVM Hypervisor FW950.00 through FW950.E0, FW1050.00 through FW1050.50, and FW1060.00 through FW1060.40 could allow a local privileged user to cause a denial of service by issuing a specially crafted IBM i hypervisor call that would disclose memory contents or consume excessive memory resources.
Other sources
The PowerVM hypervisor could allow a local privileged user to cause a denial of service by issuing a specially crafted IBMi hypervisor call that would disclose memory contents or consume excessive memory resources.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-36035?
CVE-2025-36035 has a high severity rating due to its potential to allow local privileged users to cause a denial of service.
How do I fix CVE-2025-36035?
To mitigate CVE-2025-36035, it is recommended to update the IBM PowerVM Hypervisor to the latest firmware version provided by IBM.
Which versions of IBM PowerVM Hypervisor are affected by CVE-2025-36035?
CVE-2025-36035 affects IBM PowerVM Hypervisor versions FW950.00 through FW950.E0, FW1050.00 through FW1050.50, and FW1060.00 through FW1060.40.
What impact can CVE-2025-36035 have on systems?
CVE-2025-36035 can lead to a denial of service, potentially exposing memory contents or causing system instability.
Who is primarily at risk with CVE-2025-36035?
Local privileged users of affected IBM PowerVM Hypervisor versions are primarily at risk with CVE-2025-36035.