Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-48914

Опубликовано: 12 июн. 2026
Источник: debian

Описание

A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
qemufixed1:11.0.2+ds-1package
qemufixed1:10.0.11+ds-0+deb13u1trixiepackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2488283

  • Introduced with: https://gitlab.com/qemu-project/qemu/-/commit/f34e73cd69bdbdb9b1d56b288c5e14d6fff58165 (v1.1.0-rc3)

  • Fixed by: https://gitlab.com/qemu-project/qemu/-/commit/f5e2c6906cad9a84140e232f2e3eb7a46bf07f62 (v11.0.2)

Связанные уязвимости

CVSS3: 6.7
ubuntu
около 2 месяцев назад

A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process.

CVSS3: 6.7
redhat
2 месяца назад

A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process.

CVSS3: 6.7
nvd
около 2 месяцев назад

A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process.

CVSS3: 6.7
msrc
около 1 месяца назад

Qemu-kvm: heap buffer overflow in virtio-blk scsi request handling

rocky
16 дней назад

Low: qemu-kvm security update