<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T16:44:16.845016+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2020:4059</id>
    <title>ALSA-2020:4059 — Important: virt:rhel security update</title>
    <updated>2026-10-04T16:44:17.291971+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: libiscsi, AlmaLinux:8: libiscsi-devel, AlmaLinux:8: libiscsi-utils, AlmaLinux:8: netcf, AlmaLinux:8: netcf-devel, AlmaLinux:8: netcf-libs, AlmaLinux:8: sgabios, AlmaLinux:8: sgabios-bin</p>
<p>Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.</p>
<p>Security Fix(es):</p>
<p>* QEMU: usb: out-of-bounds r/w access issue while processing usb packets (CVE-2020-14364)</p>
<p>* QEMU: slirp: networking out-of-bounds read information disclosure vulnerability (CVE-2020-10756)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2020:4059"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-00072</id>
    <title>bdu:2021-00072</title>
    <updated>2026-10-04T16:44:17.292086+00:00</updated>
    <content>bdu:2021-00072</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-00072"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2020-14364</id>
    <title>Withdrawn: BELL-CVE-2020-14364 — CVE-2020-14364 does not affect BellSoft software</title>
    <updated>2026-10-04T16:44:17.292105+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2020-14364"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2020-avi-525</id>
    <title>certfr-2020-avi-525 — Une vulnérabilité a été découverte dans Xen. Elle permet à un attaquant
de provoquer une exécution de code arbitraire à…</title>
    <updated>2026-10-04T16:44:17.292121+00:00</updated>
    <content>certfr-2020-avi-525</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2020-avi-525"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-61967</id>
    <title>cnvd-2020-61967</title>
    <updated>2026-10-04T16:44:17.292136+00:00</updated>
    <content>cnvd-2020-61967</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-61967"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-42411</id>
    <title>EUVD-2026-42411</title>
    <updated>2026-10-04T16:44:17.292148+00:00</updated>
    <content>EUVD-2026-42411</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-42411"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-14364</id>
    <title>fkie_cve-2020-14364</title>
    <updated>2026-10-04T16:44:17.292158+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice 'setup_len' exceeds its 'data_buf[4096]' in the do_token_in, do_token_out routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-14364"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-fq9g-vccc-q7c7</id>
    <title>GHSA-fq9g-vccc-q7c7</title>
    <updated>2026-10-04T16:44:17.292181+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice 'setup_len' exceeds its 'data_buf[4096]' in the do_token_in, do_token_out routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-fq9g-vccc-q7c7"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-14364</id>
    <title>gsd-2020-14364</title>
    <updated>2026-10-04T16:44:17.292197+00:00</updated>
    <content>gsd-2020-14364</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-14364"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2020-14364</id>
    <title>msrc_CVE-2020-14364 — An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue…</title>
    <updated>2026-10-04T16:44:17.292207+00:00</updated>
    <content>msrc_CVE-2020-14364</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2020-14364"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2020:4047</id>
    <title>RHSA-2020:4047 — Red Hat Security Advisory: qemu-kvm-ma security update</title>
    <updated>2026-10-04T16:44:17.292225+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>QEMU: usb: out-of-bounds r/w access issue while processing usb packets</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2020:4047"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2020:4059</id>
    <title>RHSA-2020:4059 — Red Hat Security Advisory: virt:rhel security update</title>
    <updated>2026-10-04T16:44:17.292240+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>QEMU: slirp: networking out-of-bounds read information disclosure vulnerability QEMU: usb: out-of-bounds r/w access issue while processing usb packets</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2020:4059"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2020:14521-1</id>
    <title>SUSE-SU-2020:14521-1 — Security update for xen</title>
    <updated>2026-10-04T16:44:17.292257+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for xen</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2020:14521-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-14364</id>
    <title>UBUNTU-CVE-2020-14364</title>
    <updated>2026-10-04T16:44:17.292282+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: qemu, Ubuntu:16.04:LTS: qemu, Ubuntu:18.04:LTS: qemu, Ubuntu:20.04:LTS: qemu</p>
<p>An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice 'setup_len' exceeds its 'data_buf[4096]' in the do_token_in, do_token_out routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-14364"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1973</id>
    <title>WID-SEC-W-2024-1973 — QEMU, Xen und Citrix Hypervisor: Schwachstelle ermöglicht Ausführen von beliebigem Programmcode mit den Rechten des Die…</title>
    <updated>2026-10-04T16:44:17.292309+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in QEMU, Xen und Citrix Hypervisor ausnutzen, um einen Denial of Service Angriff durchzuführen oder möglicherweise beliebigen Programmcode mit den Rechten des Dienstes auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1973"/>
  </entry>
</feed>
