<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T13:14:26.465172+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2021:1762</id>
    <title>ALSA-2021:1762 — Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T13:14:26.720851+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: hivex, AlmaLinux:8: hivex-devel, AlmaLinux:8: libguestfs-winsupport, AlmaLinux:8: libiscsi, AlmaLinux:8: libiscsi-devel, AlmaLinux:8: libiscsi-utils, AlmaLinux:8: libnbd, AlmaLinux:8: libnbd-devel, AlmaLinux:8: libvirt-dbus, AlmaLinux:8: nbdfuse and 36 more</p>
<p>Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.</p>
<p>Security Fix(es):</p>
<p>* libvirt: double free in qemuAgentGetInterfaces() in qemu_agent.c (CVE-2020-25637)</p>
<p>* QEMU: heap buffer overflow in msix_table_mmio_write() in hw/pci/msix.c (CVE-2020-27821)</p>
<p>* QEMU: ide: atapi: OOB access while processing read commands (CVE-2020-29443)</p>
<p>* QEMU: heap buffer overflow in iscsi_aio_ioctl_cb() in block/iscsi.c may lead to information disclosure (CVE-2020-11947)</p>
<p>* QEMU: reachable assertion failure in net_tx_pkt_add_raw_fragment() in hw/net/net_tx_pkt.c (CVE-2020-16092)</p>
<p>* QEMU: infinite loop in e1000e_write_packet_to_guest() in hw/net/e1000e_core.c (CVE-2020-25707)</p>
<p>* QEMU: assertion failure through usb_packet_unmap() in hw/usb/hcd-ehci.c (CVE-2020-25723)</p>
<p>* QEMU: e1000e: infinite loop scenario in case of null packet descriptor (CVE-2020-28916)</p>
<p>* QEMU: slirp: out-of-bounds access while processing ARP/NCSI packets (CVE-2020-29129, CVE-2020-29130)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p>
<p>Additional Changes:</p>
<p>For detailed information on changes in this release, see the AlmaLinux Rel…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2021:1762"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-05249</id>
    <title>bdu:2021-05249</title>
    <updated>2026-10-03T13:14:26.720999+00:00</updated>
    <content>bdu:2021-05249</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-05249"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2020-29443</id>
    <title>Withdrawn: BELL-CVE-2020-29443 — CVE-2020-29443 does not affect BellSoft software</title>
    <updated>2026-10-03T13:14:26.721018+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2020-29443"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-06865</id>
    <title>cnvd-2021-06865</title>
    <updated>2026-10-03T13:14:26.721034+00:00</updated>
    <content>cnvd-2021-06865</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-06865"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-47323</id>
    <title>EUVD-2026-47323</title>
    <updated>2026-10-03T13:14:26.721046+00:00</updated>
    <content>EUVD-2026-47323</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-47323"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-29443</id>
    <title>fkie_cve-2020-29443</title>
    <updated>2026-10-03T13:14:26.721057+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not validated.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-29443"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3q92-j8r6-g6h8</id>
    <title>GHSA-3q92-j8r6-g6h8</title>
    <updated>2026-10-03T13:14:26.721078+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not validated.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3q92-j8r6-g6h8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-29443</id>
    <title>gsd-2020-29443</title>
    <updated>2026-10-03T13:14:26.721091+00:00</updated>
    <content>gsd-2020-29443</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-29443"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1128</id>
    <title>OESA-2021-1128 — qemu security update</title>
    <updated>2026-10-03T13:14:26.721101+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS: qemu, openEuler:20.03-LTS-SP1: qemu</p>
<p>QEMU is a FAST! processor emulator using dynamic translation to achieve good emulation speed.  QEMU has two operating modes:     Full system emulation. In this mode, QEMU emulates a full system (for example a PC),    including one or several processors and various peripherals. It can be used to launch    different Operating Systems without rebooting the PC or to debug system code.     User mode emulation. In this mode, QEMU can launch processes compiled for one CPU on another CPU.    It can be used to launch the Wine Windows API emulator (https://www.winehq.org) or to ease    cross-compilation and cross-debugging. You can refer to https://www.qemu.org for more infortmation.

Security Fix(es):

ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not validated.(CVE-2020-29443)

An integer overflow issue was found in the vmxnet3 NIC emulator of the QEMU for versions up to v5.2.0. It may occur if a guest was to supply invalid values for rx/tx queue size or other NIC parameters. A privileged guest user may use this flaw to crash the QEMU process on the host resulting in DoS scenario.(CVE-2021-20203)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1128"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhba-2021:0639</id>
    <title>RHBA-2021:0639 — Red Hat Bug Fix Advisory: virt:8.3 bug fix and enhancement update</title>
    <updated>2026-10-03T13:14:26.721131+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>QEMU: infinite loop in e1000e_write_packet_to_guest() in hw/net/e1000e_core.c QEMU: assertion failure through usb_packet_unmap() in hw/usb/hcd-ehci.c QEMU: net: an assert failure via eth_get_gso_type QEMU: heap buffer overflow in msix_table_mmio_write() in hw/pci/msix.c QEMU: ide: atapi: OOB access while processing read commands QEMU: virtiofsd: potential privileged host device access from guest</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhba-2021:0639"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:2322</id>
    <title>RHSA-2021:2322 — Red Hat Security Advisory: qemu-kvm security update</title>
    <updated>2026-10-03T13:14:26.721158+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>QEMU: ide: atapi: OOB access while processing read commands</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:2322"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:1305-1</id>
    <title>SUSE-SU-2021:1305-1 — Security update for qemu</title>
    <updated>2026-10-03T13:14:26.721173+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for qemu</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:1305-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-29443</id>
    <title>UBUNTU-CVE-2020-29443</title>
    <updated>2026-10-03T13:14:26.721197+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: qemu, Ubuntu:16.04:LTS: qemu, Ubuntu:18.04:LTS: qemu, Ubuntu:20.04:LTS: qemu</p>
<p>ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not validated.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-29443"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1275</id>
    <title>WID-SEC-W-2022-1275 — QEMU: Schwachstelle ermöglicht Denial of Service</title>
    <updated>2026-10-03T13:14:26.721219+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann eine Schwachstelle in QEMU ausnutzen, um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1275"/>
  </entry>
</feed>
