CVE-2026-0665: Qemu-kvm: heap off-by-one in kvm xen physdevop_map_pirq
An off-by-one error was found in QEMU's KVM Xen guest support. A malicious guest could use this flaw to trigger out-of-bounds heap accesses in the QEMU process via the emulated Xen physdev hypercall interface, leading to a denial of service or potential memory corruption.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0665?
CVE-2026-0665 is rated as a high severity vulnerability due to its potential for denial of service and memory corruption.
How do I fix CVE-2026-0665?
To fix CVE-2026-0665, update to the latest version of QEMU that addresses this vulnerability.
What causes CVE-2026-0665?
CVE-2026-0665 is caused by an off-by-one error in QEMU's KVM Xen guest support leading to out-of-bounds heap accesses.
What can an attacker do with CVE-2026-0665?
An attacker can exploit CVE-2026-0665 to trigger denial of service or potentially corrupt memory in the QEMU process.
Is CVE-2026-0665 specific to certain versions of QEMU?
CVE-2026-0665 affects all versions of QEMU prior to the fix for this vulnerability, so it's important to check your version.