<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T15:04:15.956382+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2021:1762</id>
    <title>ALSA-2021:1762 — Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update</title>
    <updated>2026-10-05T15:04:16.055440+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: hivex, AlmaLinux:8: hivex-devel, AlmaLinux:8: libguestfs-winsupport, AlmaLinux:8: libiscsi, AlmaLinux:8: libiscsi-devel, AlmaLinux:8: libiscsi-utils, AlmaLinux:8: libnbd, AlmaLinux:8: libnbd-devel, AlmaLinux:8: libvirt-dbus, AlmaLinux:8: nbdfuse and 36 more</p>
<p>Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.</p>
<p>Security Fix(es):</p>
<p>* libvirt: double free in qemuAgentGetInterfaces() in qemu_agent.c (CVE-2020-25637)</p>
<p>* QEMU: heap buffer overflow in msix_table_mmio_write() in hw/pci/msix.c (CVE-2020-27821)</p>
<p>* QEMU: ide: atapi: OOB access while processing read commands (CVE-2020-29443)</p>
<p>* QEMU: heap buffer overflow in iscsi_aio_ioctl_cb() in block/iscsi.c may lead to information disclosure (CVE-2020-11947)</p>
<p>* QEMU: reachable assertion failure in net_tx_pkt_add_raw_fragment() in hw/net/net_tx_pkt.c (CVE-2020-16092)</p>
<p>* QEMU: infinite loop in e1000e_write_packet_to_guest() in hw/net/e1000e_core.c (CVE-2020-25707)</p>
<p>* QEMU: assertion failure through usb_packet_unmap() in hw/usb/hcd-ehci.c (CVE-2020-25723)</p>
<p>* QEMU: e1000e: infinite loop scenario in case of null packet descriptor (CVE-2020-28916)</p>
<p>* QEMU: slirp: out-of-bounds access while processing ARP/NCSI packets (CVE-2020-29129, CVE-2020-29130)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p>
<p>Additional Changes:</p>
<p>For detailed information on changes in this release, see the AlmaLinux Rel…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2021:1762"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-05312</id>
    <title>bdu:2021-05312</title>
    <updated>2026-10-05T15:04:16.055591+00:00</updated>
    <content>bdu:2021-05312</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-05312"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2020-27821</id>
    <title>Withdrawn: BELL-CVE-2020-27821 — CVE-2020-27821 does not affect BellSoft software</title>
    <updated>2026-10-05T15:04:16.055610+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2020-27821"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-39771</id>
    <title>cnvd-2021-39771</title>
    <updated>2026-10-05T15:04:16.055627+00:00</updated>
    <content>cnvd-2021-39771</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-39771"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-46691</id>
    <title>EUVD-2026-46691</title>
    <updated>2026-10-05T15:04:16.055639+00:00</updated>
    <content>EUVD-2026-46691</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-46691"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-27821</id>
    <title>fkie_cve-2020-27821</title>
    <updated>2026-10-05T15:04:16.055649+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in the memory management API of QEMU during the initialization of a memory region cache. This issue could lead to an out-of-bounds write access to the MSI-X table while performing MMIO operations. A guest user may abuse this flaw to crash the QEMU process on the host, resulting in a denial of service. This flaw affects QEMU versions prior to 5.2.0.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-27821"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-7p47-wfc3-mcqv</id>
    <title>GHSA-7p47-wfc3-mcqv</title>
    <updated>2026-10-05T15:04:16.055672+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in the memory management API of QEMU during the initialization of a memory region cache. This issue could lead to an out-of-bounds write access to the MSI-X table while performing MMIO operations. A guest user may abuse this flaw to crash the QEMU process on the host, resulting in a denial of service. This flaw affects QEMU versions prior to 5.2.0.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-7p47-wfc3-mcqv"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-27821</id>
    <title>gsd-2020-27821</title>
    <updated>2026-10-05T15:04:16.055687+00:00</updated>
    <content>gsd-2020-27821</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-27821"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2020-27821</id>
    <title>msrc_CVE-2020-27821 — A flaw was found in the memory management API of QEMU during the initialization of a memory region cache. This issue co…</title>
    <updated>2026-10-05T15:04:16.055697+00:00</updated>
    <content>msrc_CVE-2020-27821</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2020-27821"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1012</id>
    <title>OESA-2021-1012 — qemu security update</title>
    <updated>2026-10-05T15:04:16.055715+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS: qemu, openEuler:20.03-LTS-SP1: qemu</p>
<p>QEMU is a FAST! processor emulator using dynamic translation to achieve good emulation speed.  QEMU has two operating modes:     Full system emulation. In this mode, QEMU emulates a full system (for example a PC),    including one or several processors and various peripherals. It can be used to launch    different Operating Systems without rebooting the PC or to debug system code.     User mode emulation. In this mode, QEMU can launch processes compiled for one CPU on another CPU.    It can be used to launch the Wine Windows API emulator (https://www.winehq.org) or to ease    cross-compilation and cross-debugging. You can refer to https://www.qemu.org for more infortmation.\r\n\r\n
Security Fix(es):\r\n\r\n
A flaw was found in the memory management API of QEMU during the initialization of a memory region cache. This issue could lead to an out-of-bounds write access to the MSI-X table while performing MMIO operations. A guest user may abuse this flaw to crash the QEMU process on the host, resulting in a denial of service. This flaw affects QEMU versions prior to 5.2.0.(CVE-2020-27821)\r\n\r\n</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1012"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhba-2021:0639</id>
    <title>RHBA-2021:0639 — Red Hat Bug Fix Advisory: virt:8.3 bug fix and enhancement update</title>
    <updated>2026-10-05T15:04:16.055744+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>QEMU: infinite loop in e1000e_write_packet_to_guest() in hw/net/e1000e_core.c QEMU: assertion failure through usb_packet_unmap() in hw/usb/hcd-ehci.c QEMU: net: an assert failure via eth_get_gso_type QEMU: heap buffer overflow in msix_table_mmio_write() in hw/pci/msix.c QEMU: ide: atapi: OOB access while processing read commands QEMU: virtiofsd: potential privileged host device access from guest</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhba-2021:0639"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-27821</id>
    <title>UBUNTU-CVE-2020-27821</title>
    <updated>2026-10-05T15:04:16.055770+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:20.04:LTS: qemu</p>
<p>A flaw was found in the memory management API of QEMU during the initialization of a memory region cache. This issue could lead to an out-of-bounds write access to the MSI-X table while performing MMIO operations. A guest user may abuse this flaw to crash the QEMU process on the host, resulting in a denial of service. This flaw affects QEMU versions prior to 5.2.0.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-27821"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1274</id>
    <title>WID-SEC-W-2022-1274 — QEMU: Schwachstelle ermöglicht Denial of Service</title>
    <updated>2026-10-05T15:04:16.055789+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann eine Schwachstelle in QEMU ausnutzen, um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1274"/>
  </entry>
</feed>
