CVE-2025-1950
published 2025-04-22CVE-2025-1950: IBM Hardware Management Console - Power Systems V10.2.1030.0 and V10.3.1050.0 could allow a local user to execute commands locally due to improper validation…
PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.19%
8.5th percentile
IBM Hardware Management Console - Power Systems V10.2.1030.0 and V10.3.1050.0 could allow a local user to execute commands locally due to improper validation of libraries of an untrusted source.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | hardware_management_console | — | — |
| ibm | hardware_management_console | — | — |
| ibm | hardware_management_console_power_systems | — | — |
| ibm | hardware_management_console_power_systems | — | — |
| linux | linux_kernel | >= 0 < 6.12.9-1 | 6.12.9-1 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qcvj-mcp5-pjg8: IBM Hardware Management Console - Power Systems V10
ghsa_unreviewed·2025-04-22
CVE-2025-1950 [CRITICAL] CWE-114 GHSA-qcvj-mcp5-pjg8: IBM Hardware Management Console - Power Systems V10
IBM Hardware Management Console - Power Systems V10.2.1030.0 and V10.3.1050.0 could allow a local user to execute commands locally due to improper validation of libraries of an untrusted source.
OSV
CVE-2025-21630: In the Linux kernel, the following vulnerability has been resolved:
io_uring/net: always initialize kmsg->msg
osv·2025-01-15
CVE-2025-21630 CVE-2025-21630: In the Linux kernel, the following vulnerability has been resolved:
io_uring/net: always initialize kmsg->msg
In the Linux kernel, the following vulnerability has been resolved:
io_uring/net: always initialize kmsg->msg.msg_inq upfront
syzbot reports that ->msg_inq may get used uinitialized from the
following path:
BUG: KMSAN: uninit-value in io_recv_buf_select io_uring/net.c:1094 [inline]
BUG: KMSAN: uninit-value in io_recv+0x930/0x1f90 io_uring/net.c:1158
io_recv_buf_select io_uring/net.c:1094 [inline]
io_recv+0x930/0x1f90 io_uring/net.c:1158
io_issue_sqe+0x420/0x2130 io_uring/io_uring.c:1740
io_queue_sqe io_uring/io_uring.c:1950 [inline]
io_req_task_submit+0xfa/0x1d0 io_uring/io_uring.c:1374
io_handle_tw_list+0x55f/0x5c0 io_uring/io_uring.c:1057
tctx_task_work_run+0x109/0x3e0 io_uring/io_uring.c:1121
tctx_task_work+0x6d/0xc0 io_uring/io_uring.c:1139
task_work_run+0x268/0x310 kernel/task_work
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-04-22
Published