<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 16:44:17 +0000</lastBuildDate>
    <item>
      <title>ALSA-2020:4059 — Important: virt:rhel security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2020:4059</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libiscsi, AlmaLinux:8: libiscsi-devel, AlmaLinux:8: libiscsi-utils, AlmaLinux:8: netcf, AlmaLinux:8: netcf-devel, AlmaLinux:8: netcf-libs, AlmaLinux:8: sgabios, AlmaLinux:8: sgabios-bin&lt;/p&gt;
&lt;p&gt;Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* QEMU: usb: out-of-bounds r/w access issue while processing usb packets (CVE-2020-14364)&lt;/p&gt;
&lt;p&gt;* QEMU: slirp: networking out-of-bounds read information disclosure vulnerability (CVE-2020-10756)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libiscsi, AlmaLinux:8: libiscsi-devel, AlmaLinux:8: libiscsi-utils, AlmaLinux:8: netcf, AlmaLinux:8: netcf-devel, AlmaLinux:8: netcf-libs, AlmaLinux:8: sgabios, AlmaLinux:8: sgabios-bin&lt;/p&gt;
&lt;p&gt;Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* QEMU: usb: out-of-bounds r/w access issue while processing usb packets (CVE-2020-14364)&lt;/p&gt;
&lt;p&gt;* QEMU: slirp: networking out-of-bounds read information disclosure vulnerability (CVE-2020-10756)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2020:4059</guid>
    </item>
    <item>
      <title>bdu:2021-00072</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-00072</link>
      <description>bdu:2021-00072</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-00072</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2020-14364 — CVE-2020-14364 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2020-14364</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2020-14364</guid>
    </item>
    <item>
      <title>certfr-2020-avi-525 — Une vulnérabilité a été découverte dans Xen. Elle permet à un attaquant
de provoquer une exécution de code arbitraire à…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-525</link>
      <description>certfr-2020-avi-525</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-525</guid>
    </item>
    <item>
      <title>cnvd-2020-61967</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-61967</link>
      <description>cnvd-2020-61967</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-61967</guid>
    </item>
    <item>
      <title>EUVD-2026-42411</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-42411</link>
      <description>EUVD-2026-42411</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-42411</guid>
    </item>
    <item>
      <title>fkie_cve-2020-14364</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-14364</link>
      <description>&lt;p&gt;An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice &amp;#39;setup_len&amp;#39; exceeds its &amp;#39;data_buf[4096]&amp;#39; in the do_token_in, do_token_out routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice &amp;#39;setup_len&amp;#39; exceeds its &amp;#39;data_buf[4096]&amp;#39; in the do_token_in, do_token_out routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-14364</guid>
    </item>
    <item>
      <title>GHSA-fq9g-vccc-q7c7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fq9g-vccc-q7c7</link>
      <description>&lt;p&gt;An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice &amp;#39;setup_len&amp;#39; exceeds its &amp;#39;data_buf[4096]&amp;#39; in the do_token_in, do_token_out routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice &amp;#39;setup_len&amp;#39; exceeds its &amp;#39;data_buf[4096]&amp;#39; in the do_token_in, do_token_out routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fq9g-vccc-q7c7</guid>
    </item>
    <item>
      <title>gsd-2020-14364</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-14364</link>
      <description>gsd-2020-14364</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-14364</guid>
    </item>
    <item>
      <title>msrc_CVE-2020-14364 — An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2020-14364</link>
      <description>msrc_CVE-2020-14364</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2020-14364</guid>
    </item>
    <item>
      <title>RHSA-2020:4047 — Red Hat Security Advisory: qemu-kvm-ma security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:4047</link>
      <description>&lt;p&gt;QEMU: usb: out-of-bounds r/w access issue while processing usb packets&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;QEMU: usb: out-of-bounds r/w access issue while processing usb packets&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:4047</guid>
    </item>
    <item>
      <title>RHSA-2020:4059 — Red Hat Security Advisory: virt:rhel security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:4059</link>
      <description>&lt;p&gt;QEMU: slirp: networking out-of-bounds read information disclosure vulnerability QEMU: usb: out-of-bounds r/w access issue while processing usb packets&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;QEMU: slirp: networking out-of-bounds read information disclosure vulnerability QEMU: usb: out-of-bounds r/w access issue while processing usb packets&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:4059</guid>
    </item>
    <item>
      <title>SUSE-SU-2020:14521-1 — Security update for xen</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2020:14521-1</link>
      <description>&lt;p&gt;Security update for xen&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for xen&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2020:14521-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-14364</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-14364</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: qemu, Ubuntu:16.04:LTS: qemu, Ubuntu:18.04:LTS: qemu, Ubuntu:20.04:LTS: qemu&lt;/p&gt;
&lt;p&gt;An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice &amp;#39;setup_len&amp;#39; exceeds its &amp;#39;data_buf[4096]&amp;#39; in the do_token_in, do_token_out routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: qemu, Ubuntu:16.04:LTS: qemu, Ubuntu:18.04:LTS: qemu, Ubuntu:20.04:LTS: qemu&lt;/p&gt;
&lt;p&gt;An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice &amp;#39;setup_len&amp;#39; exceeds its &amp;#39;data_buf[4096]&amp;#39; in the do_token_in, do_token_out routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-14364</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1973 — QEMU, Xen und Citrix Hypervisor: Schwachstelle ermöglicht Ausführen von beliebigem Programmcode mit den Rechten des Die…</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1973</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in QEMU, Xen und Citrix Hypervisor ausnutzen, um einen Denial of Service Angriff durchzuführen oder möglicherweise beliebigen Programmcode mit den Rechten des Dienstes auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in QEMU, Xen und Citrix Hypervisor ausnutzen, um einen Denial of Service Angriff durchzuführen oder möglicherweise beliebigen Programmcode mit den Rechten des Dienstes auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1973</guid>
    </item>
  </channel>
</rss>
