Search CVE reports


Toggle filters

1 – 10 of 483 results


CVE-2026-5763

Medium priority
Needs evaluation

[virtio-scsi request size mismatch]

1 affected package

qemu

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-5761

Medium priority
Needs evaluation

[virtio-blk: zone report buffer out-of-memory]

1 affected package

qemu

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-5744

Medium priority
Needs evaluation

[hw/uefi: heap overflow]

1 affected package

qemu

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-3890

Medium priority
Needs evaluation

[hcd-ohci: infinite loop]

1 affected package

qemu

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-3842

Medium priority

Some fixes available 2 of 6

[Unknown description]

1 affected package

qemu

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Fixed Not affected Needs evaluation Needs evaluation
Show less packages

CVE-2026-3196

Medium priority

Some fixes available 2 of 6

two potential OOB memory accesses in virtio-snd

1 affected package

qemu

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Fixed Not affected Needs evaluation Needs evaluation
Show less packages

CVE-2026-3195

Medium priority

Some fixes available 2 of 6

two potential OOB memory accesses in virtio-snd

1 affected package

qemu

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Fixed Not affected Needs evaluation Needs evaluation
Show less packages

CVE-2026-2243

Medium priority

Some fixes available 3 of 7

A flaw was found in QEMU. A specially crafted VMDK image could trigger an out-of-bounds read vulnerability, potentially leading to a 12-byte leak of sensitive information or a denial of service condition (DoS).

1 affected package

qemu

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-0665

Medium priority

Some fixes available 2 of 3

An off-by-one error was found in QEMU's KVM Xen guest support. A malicious guest could use this flaw to trigger out-of-bounds heap accesses in the QEMU process via the emulated Xen physdev hypercall interface, leading to a denial...

1 affected package

qemu

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Fixed Not affected Not affected Not affected
Show less packages

CVE-2025-8860

Medium priority
Not affected

A flaw was found in QEMU in the uefi-vars virtual device. When the guest writes to register UEFI_VARS_REG_BUFFER_SIZE, the .write callback `uefi_vars_write` is invoked. The function allocates a heap buffer without zeroing the...

1 affected package

qemu

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Not affected Not affected Not affected Not affected
Show less packages