-Infinity
0

Qemu QEMU Guest Agent (qga)Qemu-kvm: qemu-guest-agent: local privilege escalation via symlink attack in guest-ssh-add-authorized-keys

Risk 64
Severity
7.3
First published (updated )

Qemu qmp_guest_ssh_add_authorized_keysWhen qmp_guest_ssh_add_authorized_keys adds an SSH key for an existing local user, the agent (runnin…

Risk 33
Severity
7
First published (updated )

Qemu QemuQemu-kvm: heap buffer overflow in virtio-blk scsi request handling

Risk 41
Severity
6.7
First published (updated )

Qemu QemuQEMU's virtio-blk device can write past the end of a heap-allocated MMIO bounce buffer while handlin…

Risk 19
Severity
4
First published (updated )

Qemu QemuQEMU calc_image_hostmem Integer Overflow Local Privilege Escalation Vulnerability

Risk 46
First published (updated )
Advisory
ZDI-26-332
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Qemu QemuZDI-26-332: QEMU calc_image_hostmem Integer Overflow Local Privilege Escalation Vulnerability

Risk 49
First published (updated )

oss-secQEMU CXL Memory Corruption Vulnerability ("QEMUtiny")

Qemu QemuQemu-kvm: hyperv/syndbg: missing mapped-length guard after cpu_physical_memory_map causes host oob write

Risk 69
Severity
7.8
First published (updated )

Qemu QemuIf cpu_physical_memory_map() returns a length shorter than the one that was passed into the function…

Risk 33
Severity
7
First published (updated )

Qemu QemuQemu-kvm: virtio-snd: heap buffer overflow in virtio_snd_pcm_in_cb (incomplete fix for cve-2024-7730)

Risk 67
Severity
7.4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Qemu QemuA flaw was found in QEMU. When reading input audio in the virtio-snd device input callback, the `vir…

Risk 33
Severity
7
First published (updated )

Qemu QEMU-KVMQemu-kvm: virtio-snd: integer overflow leading to unbounded memory allocation

Risk 32
Severity
5.5
First published (updated )

Qemu QemuInteger Overflow

Risk 19
Severity
4
First published (updated )

Qemu QemuQemu-kvm: heap buffer out-of-bounds read in vmdk compressed grain parsing

Risk 32
Severity
5.1
First published (updated )

Qemu QemuA heap buffer over-read was found in block/vmdk.c. A crafted VMDK file can make qemu-img (or qemu wi…

Risk 5
Severity
1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Qemu QemuQemu-kvm: heap off-by-one in kvm xen physdevop_map_pirq

Risk 36
Severity
6.5
First published (updated )

Qemu QemuAn off-by-one error was found in QEMU's KVM Xen guest support. A malicious guest could use this flaw…

Risk 19
Severity
4
First published (updated )

Qemu QemuQemu-kvm: unbounded allocation in virtio-crypto

Risk 32
Severity
5.5
First published (updated )

Qemu QemuA flaw was found in the virtio-crypto device of QEMU. The symmetric path enforces a length limit usi…

Risk 19
Severity
4
First published (updated )

Qemu QemuQemu-kvm: stack buffer overflow in e1000 device via short frames in loopback mode

Risk 36
Severity
6.2
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Qemu QemuBuffer Overflow

Risk 19
Severity
4
First published (updated )

Qemu QemuQemu-kvm: vnc websocket handshake use-after-free

Risk 43
Severity
7.5
First published (updated )

Qemu QemuUse After Free

Risk 19
Severity
4
First published (updated )

BleepingComputerNew VMScape attack breaks guest-host isolation on AMD, Intel CPUs

First published (updated )

Qemu QemuQEMU uefi-vars Uninitialized Memory Information Disclosure Vulnerability

Risk 22
First published (updated )
Advisory
ZDI-25-884
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Qemu QemuZDI-25-884: QEMU uefi-vars Uninitialized Memory Information Disclosure Vulnerability

Risk 22
First published (updated )

Qemu QemuQemu-kvm: uefi-vars: information disclosure vulnerability in uefi_vars_write callback

Risk 18
Severity
3.3
First published (updated )

Qemu Qemuhw/pci/pcie_sriov.c in QEMU through 10.0.3 mishandles the VF Enable bit write mask, a related issue …

Risk 34
Severity
5.4
First published (updated )

Qemu Qemuhw/pci/pcie_sriov.c in QEMU through 10.0.3 has a migration state inconsistency, a related issue to C…

Risk 34
Severity
5.4
First published (updated )

Linux Linux kernelvhost-scsi: protect vq->log_used with vq->mutex

Risk 32
Severity
5.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203