Описание
Security update for qemu
This update for qemu fixes the following issues:
- CVE-2025-14876: qemu-kvm: Unbounded allocation in virtio-crypto (bsc#1255400).
- CVE-2026-0665: out-of-bounds heap access can lead to a denial of service or potential memory corruption (bsc#1256484).
- CVE-2026-2243: incorrect bounds check leads to heap out-of-bounds read and a 12-byte information leak when processing specially crafted VMDK files (bsc#1258509).
- CVE-2026-3195: heap buffer overflow when reading input audio in the virtio-snd device input callback due to
insufficient checks in
virtio_snd_pcm_in_cb(bsc#1259080). - CVE-2026-3196: integer overflow in the virtio-snd device via PCM_INFO requests from the guest leads to unbounded memory allocation and host denial-of-service (bsc#1259079).
- CVE-2026-3842: hyperv/syndbg: missing mapped-length guard after cpu_physical_memory_map causes host OOB write (bsc#1262089).
Список пакетов
SUSE Linux Enterprise Server 15 SP6-LTSS
SUSE Linux Enterprise Server for SAP Applications 15 SP6
Ссылки
- Link for SUSE-SU-2026:2386-1
- E-Mail link for SUSE-SU-2026:2386-1
- SUSE Security Ratings
- SUSE Bug 1199023
- SUSE Bug 1255400
- SUSE Bug 1256484
- SUSE Bug 1258509
- SUSE Bug 1259079
- SUSE Bug 1259080
- SUSE Bug 1262089
- SUSE CVE CVE-2025-14876 page
- SUSE CVE CVE-2026-0665 page
- SUSE CVE CVE-2026-2243 page
- SUSE CVE CVE-2026-3195 page
- SUSE CVE CVE-2026-3196 page
- SUSE CVE CVE-2026-3842 page
Описание
A flaw was found in the virtio-crypto device of QEMU. A malicious guest operating system can exploit a missing length limit in the AKCIPHER path, leading to uncontrolled memory allocation. This can result in a denial of service (DoS) on the host system by causing the QEMU process to terminate unexpectedly.
Затронутые продукты
Ссылки
- CVE-2025-14876
- SUSE Bug 1255400
Описание
An off-by-one error was found in QEMU's KVM Xen guest support. A malicious guest could use this flaw to trigger out-of-bounds heap accesses in the QEMU process via the emulated Xen physdev hypercall interface, leading to a denial of service or potential memory corruption.
Затронутые продукты
Ссылки
- CVE-2026-0665
- SUSE Bug 1256484
Описание
A flaw was found in QEMU. A specially crafted VMDK image could trigger an out-of-bounds read vulnerability, potentially leading to a 12-byte leak of sensitive information or a denial of service condition (DoS).
Затронутые продукты
Ссылки
- CVE-2026-2243
- SUSE Bug 1258509
Описание
unknown
Затронутые продукты
Ссылки
- CVE-2026-3195
- SUSE Bug 1259080
Описание
unknown
Затронутые продукты
Ссылки
- CVE-2026-3196
- SUSE Bug 1259079
Описание
unknown
Затронутые продукты
Ссылки
- CVE-2026-3842
- SUSE Bug 1262089