SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-4932

MEDIUM · CVSS 4.2 EPSS 0.08%

Source: NVD + CISA KEV + EPSS · Published 2026-07-28 · Last synced 2026-08-27

CyberRota Analysis

AI-Generated

IBM PowerVM Hypervisor versions FW1110.00 to FW1110.20 and FW1060.00 to FW1060.71 are vulnerable to an attack that allows individuals with physical access to the hardware to exploit insufficient cryptographic entropy, potentially enabling them to decrypt sensitive encrypted memory. This vulnerability poses a medium risk, particularly for organizations that utilize these hypervisor versions in environments where physical security cannot be guaranteed. IT and security teams managing IBM PowerVM deployments should prioritize addressing this issue to mitigate the risk of unauthorized data access.

CVE
CVE-2026-4932
Severity
MEDIUM
CVSS
4.2
EPSS
0.08%

Original NVD Description

IBM PowerVM Hypervisor FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 could allow an attacker with physical access to the Transparent Memory Encryption (TME) hardware to decrypt encrypted memory due to insufficient cryptographic entropy.

Related CVEs

Other vulnerabilities affecting the same vendor(s)