IBM Support

Release of Guardium Firmware 8_0_0 for SR630V2 M7 appliances

Release Notes


Abstract

Release of the new firmware package for the IBM Guardium models based on Lenovo ThinkSystem SR630V2 (M7) 7Z71. ISO and IMG formats are supported.

Content

Guardium_FirmwareUpdate_SR630V2_DVD_V8_0_0.iso
  • This firmware can be downloaded from IBM Fix Central.
  • To create a bootable USB with version 8_0_0, you must download the BOMC 13 tool and use it to make the USB.
Guardium appliance is an 1U form factor: 4571-GxC
Guardium appliance
Guardium Firmware 8_0_0 for SR630V2 Appliances (ISO/IMG)
 
This version 8_0_0 firmware updates IBM Guardium® SR630V2 (M7) appliances with microcode security fixes and includes updates for XCC-BMC, UEFI, LXPM, Broadcom Card, and RAID 940 controllers and HDDs.
 

Before you begin
 
The SR630V2 (M7) firmware update 8_0_0 is intended to update firmware on Guardium appliances. This firmware includes multiple security vulnerabilities and updates. Administrators must download the ISO and burn it to a DVD or the workingdir directory and the Lenovo BOMC tool (lnvgy_utl_lxce_bomc01g-13.0.1_windows_x86-64).
 
The newest BOMC tool has limitations. This version is not compatible with Rufus to create an USB bootable, but it is possible to create it with the same BOMC tool.
Supported appliances, types, and model information
This firmware update applies to the following IBM Guardium SR630V2 (M7) appliances, server type, or machine type models.
Appliance name
Server type
Lenovo server machine type
IBM machine type model
IBM X2464 Collector
SR630V2 (M7)
MT 7Z71
4731-G2D
IBM X2464 Aggregator
SR630V2 (M7)
MT 7Z71
4731-G3D
IBM X3364 Collector
SR630V2 (M7)
MT 7Z71
4731-G4D
IBM X3364 Aggregator
SR630V2 (M7)
MT 7Z71
4731-G5D
IBM X3364N Collector
SR630V2 (M7)
MT 7Z71
4731-G6D
IBM X3364N Aggregator
SR630V2 (M7)
MT 7Z71
4731-G7D
Table 1: List of SR630V2 (M7) appliances supported by the version 8_0_0 firmware updates.
Important file changes and prerequisites in this firmware update
The following table lists the software versions contained within the firmware package. The core changes in this release of version 8_0_0 are to provide new UEFI microcode security updates and XCC-BMC updates for the SR630V2 (M7) Guardium appliance.
Component
Firmware version
XCC-BMC
5.50 (AFOT54H)
oem_fw_xcc_afot54h-5.50_anyos_noarch.uxz
UEFI/BIOS
3.50 (AFE134E)
lnvgy_fw_uefi_afe134e-3.50_anyos_32-64.uxz
LXPM
3.31 (XWL128G)
lnvgy_fw_lxpm_xwl128g-3.31.00_anyos_noarch.uxz
3.31 (XWL 228G)
lnvgy_fw_drvln_xwl228g-3.31.00_anyos_noarch.uxz
RAID Controller 940
52.32.0-5990-0
lnvgy_fw_raid_mr3.5.940-52.32.0-5990-0_linux_x86-64
PCI and LOM Adapters
4.60-1.3684.0-2
intc-lnvgy_fw_nic_net.e800.da2.pcie-4.60-1.3684.0-2_linux_x86-64
PCI and LOM Adapters
232.1.132.8-2
brcm-lnvgy_fw_nic_nxe-232.1.132.8-2_linux_x86-64
OR
PCI and LOM Adapters
9.52-6.50-1.3684
intc-lnvgy_fw_nic_net-9.52-6.50-1.3684.0-4_linux_x86-64
HDDs
1.53.02-0
lnvgy_fw_drives_all-1.53.02-0_linux_x86-64
Table 2: Components and software versions included in the SR630V2 (M7) firmware update version 8_0_0.
Processes
  •  ISO image is for remote installation using XCC-BMC functionalities.
  • IMG image is only for USB key installation. (Physical access to the server. Using the Lenovo BOMC 13.0.1 tool and the workingdir for this version.)
Firmware package changes
  • Image package process
  • Use of Tool center 13.0.1
 
Important fixes

UEFI
Update Change History
Version 3.50, Build ID AFE134E [Suggested] 
Release date: [April/ 2025] 
Release Ref: FOD25B 

3.0 Security fixes
Addresses LEN-183954, LEN-182880, CVE-2025-22831, CVE-2025-22832, CVE-2025-22833, CVE-2023-52353, CVE-2024-9143, CVE-2024-43420, CVE-2025-20623, CVE-2024-45332. 
4.0 Other fixes
  • Fixed the issue that changing multiple setting of EnableDisableAdapterOptionROMSupport may not take effect by OneCLI tool. 
  • Fixed the issue that the port number were shown incorrectly in BMC Settings > Network Settings > Shared NIC on in System Setup Utility for Broadcom 57412 10GBASE-T 4-port OCP Ethernet Adapter. 
  • Fixed the issue that network error message "Error: Could not detect network connection" may show during POST. (TT3010) 
  • Fixed the issue that the system event log FQXSFPU0035N was not reported when CPU IERR occurred. 

5.0 Enhancements
  • Integrated Intel IPU 2025.2
  • Updated microcode version to IceLake CPU XCC D0 Production MCU : m_87_606a6_0d000404 
 
6.0 Other changes
None

7.0 Limitations
None

 
XClarity Controller Firmware Update
Change History
Version 5.50 AFOT54H [Initial Release] 
Release date: August 2018 

3.0 Security fixes
Security incident: LEN-xxxx 
CVE-2015-3414, CVE-2015-3415, CVE-2015-3416, CVE-2016-6153, CVE-2017-3735, CVE-2017-3736, CVE-2017-3737, CVE-2017-3738, 
CVE-2017-5130, CVE-2017-6451, CVE-2017-6452, CVE-2017-6455, CVE-2017-6458, CVE-2017-6459, CVE-2017-6460, CVE-2017-6462, 
CVE-2017-6463, CVE-2017-6464, CVE-2017-7407, CVE-2017-8816, CVE-2017-8817, CVE-2017-10989, CVE-2017-12799, CVE-2017-12967, 
CVE-2017-13710, CVE-2017-14129, CVE-2017-14130, CVE-2017-14333, CVE-2017-14529, CVE-2017-14930, CVE-2017-14932, CVE-2017-14933, 
CVE-2017-14934, CVE-2017-14938, CVE-2017-14939, CVE-2017-14940, CVE-2017-14974, CVE-2017-15020, CVE-2017-15021, CVE-2017-15022, 
CVE-2017-15023, CVE-2017-15024, CVE-2017-15025, CVE-2017-15225, CVE-2017-15938, CVE-2017-15939, CVE-2017-15996, CVE-2017-16544, 
CVE-2017-16931, CVE-2017-16932, CVE-2017-17484, CVE-2017-1000100, CVE-2017-1000101, CVE-2017-1000254, CVE-2017-1000257, CVE-2017-1000494, CVE-2018-6872, CVE-2018-1000005, CVE-2018-1000007, CVE-2018-1000120, CVE-2018-1000121, CVE-2018-1000122 

4.0 Other fixes
None

5.0 Enhancements
None
 
6.0 Other changes
None

[{"Type":"MASTER","Line of Business":{"code":"LOB76","label":"Data Platform"},"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSMPHH","label":"IBM Security Guardium"},"ARM Category":[{"code":"a8m3p000000PCTuAAO","label":"Platform\/Installation\/Deployment"}],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"All Versions"}]

Document Information

Modified date:
06 August 2025

UID

ibm17241232