Impact
Based on the description, an attacker with service processor access can supply a carefully crafted command that triggers an integer overflow in the host firmware, allowing the attacker to read hardware register contents that should be inaccessible to the service processor. This leakage could expose privileged data or disrupt system operation, resulting in limited confidentiality or availability impacts to the host system.
Affected Systems
Affected systems are IBM Power System firmware running on Power 11 and Power 10 hardware. Specific models include Power 11 devices such as the E1180, S1122, S1124, S1122s, S1114, L1122, L1124, E1150, S1112, and for Power 10: E1080, S1022, S1024, S1022s, S1014, L1022, L1024, E1050, S1012.
Risk and Exploitability
The CVSS base score of 6.7 indicates moderate severity. The EPSS score is not available, and the vulnerability is not listed in CISA KEV, suggesting no known widespread exploitation yet. Based on the description, it is inferred that an attacker who has service processor access can execute the exploit, and no specialized conditions beyond that are required. The vendor has supplied firmware upgrades (e.g., FW1110.31, FW1120.01, FW1060.81) that address the issue.
OpenCVE Enrichment