{"id":"USN-8073-1","summary":"qemu vulnerabilities","details":"It was discovered that the UHCI controller implementation of QEMU could be\nbrought into an invalid state. An attacker inside the guest could possibly\nuse this issue to cause QEMU to crash, resulting in a denial of service.\n(CVE-2024-8354)\n\nIt was discovered that QEMU incorrectly handled memory during certain VNC\noperations. An remote attacker could possibly use this issue to cause QEMU\nto crash, resulting in a denial of service, or possibly execute arbitrary\ncode. (CVE-2025-11234)\n\nIt was discovered that the e1000 network device implementation of QEMU\ncould be made to write out of bounds. An attacker inside the guest could\npossibly use this issue to cause QEMU to crash, resulting in a denial of\nservice, or possibly execute arbitrary code. This issue only affected\nUbuntu 24.04 LTS and Ubuntu 25.10. (CVE-2025-12464)\n\nIt was discovered that the virtio-crypto device implementation of QEMU did\nnot limit the length of a certain path input. An attacker inside the guest\ncould possibly use this issue to cause QEMU to consume large amount of\nmemory, resulting in a denial of service. This issue only affected Ubuntu\n24.04 LTS and Ubuntu 25.10. (CVE-2025-14876)\n\nIt was discovered that the KVM Xen guest support of QEMU could be made to\nread out of bounds. An attacker inside the guest could possibly use this\nissue to cause QEMU to crash, resulting in a denial of service. This issue\nonly affected Ubuntu 24.04 LTS and Ubuntu 25.10. (CVE-2026-0665)","modified":"2026-04-27T18:47:23.608373839Z","published":"2026-03-04T16:13:14Z","related":["UBUNTU-CVE-2024-8354","UBUNTU-CVE-2025-11234","UBUNTU-CVE-2025-12464","UBUNTU-CVE-2025-14876","UBUNTU-CVE-2026-0665"],"upstream":["CVE-2024-8354","CVE-2025-11234","CVE-2025-12464","CVE-2025-14876","CVE-2026-0665","UBUNTU-CVE-2024-8354","UBUNTU-CVE-2025-11234","UBUNTU-CVE-2025-12464","UBUNTU-CVE-2025-14876","UBUNTU-CVE-2026-0665"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-8073-1"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2024-8354"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-11234"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-12464"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-14876"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-0665"}],"affected":[{"package":{"name":"qemu","ecosystem":"Ubuntu:22.04:LTS","purl":"pkg:deb/ubuntu/qemu@1:6.2+dfsg-2ubuntu6.28?arch=source&distro=jammy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:6.2+dfsg-2ubuntu6.28"}]}],"versions":["1:6.0+dfsg-2expubuntu1","1:6.0+dfsg-2expubuntu2","1:6.0+dfsg-2expubuntu4","1:6.2+dfsg-2ubuntu5","1:6.2+dfsg-2ubuntu6","1:6.2+dfsg-2ubuntu6.1","1:6.2+dfsg-2ubuntu6.2","1:6.2+dfsg-2ubuntu6.3","1:6.2+dfsg-2ubuntu6.4","1:6.2+dfsg-2ubuntu6.5","1:6.2+dfsg-2ubuntu6.6","1:6.2+dfsg-2ubuntu6.7","1:6.2+dfsg-2ubuntu6.8","1:6.2+dfsg-2ubuntu6.9","1:6.2+dfsg-2ubuntu6.10","1:6.2+dfsg-2ubuntu6.11","1:6.2+dfsg-2ubuntu6.12","1:6.2+dfsg-2ubuntu6.13","1:6.2+dfsg-2ubuntu6.14","1:6.2+dfsg-2ubuntu6.15","1:6.2+dfsg-2ubuntu6.16","1:6.2+dfsg-2ubuntu6.17","1:6.2+dfsg-2ubuntu6.18","1:6.2+dfsg-2ubuntu6.19","1:6.2+dfsg-2ubuntu6.21","1:6.2+dfsg-2ubuntu6.22","1:6.2+dfsg-2ubuntu6.23","1:6.2+dfsg-2ubuntu6.24","1:6.2+dfsg-2ubuntu6.25","1:6.2+dfsg-2ubuntu6.26","1:6.2+dfsg-2ubuntu6.27"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-block-extra"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-guest-agent"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-arm"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-common"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-data"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-gui"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-mips"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-misc"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-ppc"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-s390x"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-sparc"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-x86"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-x86-microvm"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-system-x86-xen"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-user"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-user-binfmt"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-user-static"},{"binary_version":"1:6.2+dfsg-2ubuntu6.28","binary_name":"qemu-utils"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8073-1.json","cves_map":{"cves":[{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2024-8354"},{"severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-11234"}],"ecosystem":"Ubuntu:22.04:LTS"}}},{"package":{"name":"qemu","ecosystem":"Ubuntu:24.04:LTS","purl":"pkg:deb/ubuntu/qemu@1:8.2.2+ds-0ubuntu1.13?arch=source&distro=noble"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:8.2.2+ds-0ubuntu1.13"}]}],"versions":["1:8.0.4+dfsg-1ubuntu3","1:8.0.4+dfsg-1ubuntu4","1:8.0.4+dfsg-1ubuntu5","1:8.1.3+ds-1ubuntu2","1:8.2.1+ds-1ubuntu1","1:8.2.1+ds-1ubuntu8","1:8.2.1+ds-1ubuntu9","1:8.2.2+ds-0ubuntu1","1:8.2.2+ds-0ubuntu1.2","1:8.2.2+ds-0ubuntu1.4","1:8.2.2+ds-0ubuntu1.5","1:8.2.2+ds-0ubuntu1.6","1:8.2.2+ds-0ubuntu1.7","1:8.2.2+ds-0ubuntu1.8","1:8.2.2+ds-0ubuntu1.9","1:8.2.2+ds-0ubuntu1.10","1:8.2.2+ds-0ubuntu1.11","1:8.2.2+ds-0ubuntu1.12"],"ecosystem_specific":{"binaries":[{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-block-extra"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-block-supplemental"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-guest-agent"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-arm"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-common"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-data"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-gui"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-mips"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-misc"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-modules-opengl"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-modules-spice"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-ppc"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-s390x"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-sparc"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-x86"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-x86-xen"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-system-xen"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-user"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-user-binfmt"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-user-static"},{"binary_version":"1:8.2.2+ds-0ubuntu1.13","binary_name":"qemu-utils"}],"availability":"No subscription required"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8073-1.json","cves_map":{"cves":[{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2024-8354"},{"severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-11234"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-12464"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-14876"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2026-0665"}],"ecosystem":"Ubuntu:24.04:LTS"}}},{"package":{"name":"qemu","ecosystem":"Ubuntu:25.10","purl":"pkg:deb/ubuntu/qemu@1:10.1.0+ds-5ubuntu2.4?arch=source&distro=questing"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:10.1.0+ds-5ubuntu2.4"}]}],"versions":["1:9.2.1+ds-1ubuntu5","1:10.0.2+ds-1ubuntu1","1:10.0.2+ds-1ubuntu2","1:10.1.0+ds-1ubuntu1","1:10.1.0+ds-5ubuntu1","1:10.1.0+ds-5ubuntu2","1:10.1.0+ds-5ubuntu2.1","1:10.1.0+ds-5ubuntu2.2"],"ecosystem_specific":{"binaries":[{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-block-extra"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-block-supplemental"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-guest-agent"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-arm"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-common"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-data"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-gui"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-mips"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-misc"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-modules-opengl"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-modules-spice"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-ppc"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-riscv"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-s390x"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-sparc"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-x86"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-x86-xen"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-system-xen"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-user"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-user-binfmt"},{"binary_version":"1:10.1.0+ds-5ubuntu2.4","binary_name":"qemu-utils"}],"availability":"No subscription required"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8073-1.json","cves_map":{"cves":[{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2024-8354"},{"severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-11234"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-12464"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-14876"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2026-0665"}],"ecosystem":"Ubuntu:25.10"}}}],"schema_version":"1.7.5"}