Description

An off-by-one error was found in QEMU's KVM Xen guest support. A malicious guest could use this flaw to trigger out-of-bounds heap accesses in the QEMU process via the emulated Xen physdev hypercall interface, leading to a denial of service or potential memory corruption.

INFO

Published Date :

2026-02-18T20:50:03.724Z

Last Modified :

2026-02-18T21:27:14.216Z

Source :

fedora
AFFECTED PRODUCTS

The following products are affected by CVE-2026-0665 vulnerability.

Vendors Products
Redhat
  • Enterprise Linux
  • Openshift

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact