187
VMScore

CVE-2022-26354

Published: 16/03/2022 Updated: 12/02/2023
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 3.2 | Impact Score: 1.4 | Exploitability Score: 1.5
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

It exists that QEMU incorrectly handled QXL display device emulation. A privileged attacker inside the guest could use this issue to cause QEMU to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2021-4206, CVE-2021-4207)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qemu qemu

debian debian linux 9.0

debian debian linux 10.0

Vendor Advisories

Several security issues were fixed in QEMU ...
概述 Moderate: virt:av and virt-devel:av security and bug fix update 类型/严重性 Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems 标题 An update for the virt:av and virt-devel:av modules is now available for Red Hat Enterprise Linux A ...
Synopsis Moderate: qemu-kvm security and bug fix update Type/Severity Security Advisory: Moderate Topic An update for qemu-kvm is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed s ...
概述 Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update 类型/严重性 Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems 标题 An update for the virt:rhel and virt-devel:rhel modules is now available for Red ...
Multiple security issues were discovered in QEMU, a fast processor emulator, which could result in denial of service or the execution of arbitrary code For the stable distribution (bullseye), this problem has been fixed in version 1:52+dfsg-11+deb11u2 We recommend that you upgrade your qemu packages For the detailed security status of qemu plea ...
A flaw was found in the vhost-vsock device of QEMU In case of error, an invalid element was not detached from the virtqueue before freeing its memory, leading to memory leakage and other unexpected results ...