Logo
vulnerabilityCVE-2026-0665
Name
CVE-2026-0665
Source
NVD ( link)Debian ( link)
Description
An off-by-one error was found in QEMU's KVM Xen guest support. A malicious guest could use this flaw to trigger out-of-bounds heap accesses in the QEMU process via the emulated Xen physdev hypercall interface, leading to a denial of service or potential memory corruption.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
qemu
Exploitable

Vulnerability Ratings#


6.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
master
11.0.0
Not Affected
openwrt
master
10.1.3-r3
Exploitable
openwrt
openwrt-25.12
10.1.2-r1
Exploitable
yocto
kirkstone
6.2.0
Not Affected
yocto
master
11.1.0
Not Affected
yocto
scarthgap
8.2.7
Patched

Resolved with patches#


qemu (yocto:scarthgap)

#
Title
Author
Resolve
1
hw/i386/kvm: fix PIRQ bounds check in xen_physdev_map_pirq()
Vulnerability Report <vr@darknavy.com>
CVE-2026-0665