Количество 10
Количество 10
CVE-2026-48914
A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process.
CVE-2026-48914
A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process.
CVE-2026-48914
A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process.
CVE-2026-48914
Qemu-kvm: heap buffer overflow in virtio-blk scsi request handling
CVE-2026-48914
A flaw was found in QEMU's virtio-blk device. The issue arises because ...
RLSA-2026:39311
Low: qemu-kvm security update
GHSA-4hmh-vx7h-h98p
A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process.
ELSA-2026-39311
ELSA-2026-39311: qemu-kvm security update (LOW)
openSUSE-SU-2026:21253-1
Security update for qemu
SUSE-SU-2026:3038-1
Security update for qemu
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-48914 A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process. | CVSS3: 6.7 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-48914 A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process. | CVSS3: 6.7 | 0% Низкий | 2 месяца назад | |
CVE-2026-48914 A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process. | CVSS3: 6.7 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-48914 Qemu-kvm: heap buffer overflow in virtio-blk scsi request handling | CVSS3: 6.7 | 0% Низкий | около 1 месяца назад | |
CVE-2026-48914 A flaw was found in QEMU's virtio-blk device. The issue arises because ... | CVSS3: 6.7 | 0% Низкий | около 2 месяцев назад | |
RLSA-2026:39311 Low: qemu-kvm security update | 0% Низкий | 16 дней назад | ||
GHSA-4hmh-vx7h-h98p A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process. | CVSS3: 6.7 | 0% Низкий | около 2 месяцев назад | |
ELSA-2026-39311 ELSA-2026-39311: qemu-kvm security update (LOW) | 18 дней назад | |||
openSUSE-SU-2026:21253-1 Security update for qemu | 24 дня назад | |||
SUSE-SU-2026:3038-1 Security update for qemu | 16 дней назад |
Уязвимостей на страницу