Vendor
critical
advisory
Qemu-kvm HyperV Syndbg Out-of-Bounds Write Vulnerability
1 CVEA critical vulnerability, CVE-2026-3842, exists in the `hyperv/syndbg` component of Qemu-kvm, allowing an attacker to perform out-of-bounds writes on the host system due to a missing mapped-length guard after a `cpu_physical_memory_map` operation.
Qemu-kvm
virtualization
hypervisor
vulnerability
guest-to-host-escape
1c
high
advisory
QEMU Privilege Escalation Vulnerability
2 TTPsA local attacker can exploit a vulnerability in QEMU to elevate their privileges and execute arbitrary code on the host system where QEMU is running.
QEMU
privilege-escalation
virtualization
vulnerability
2t
high
advisory
QEMU and libvirt: Multiple Vulnerabilities
1 TTPMultiple vulnerabilities exist in QEMU and libvirt, which can be exploited by a local attacker to disclose sensitive information and bypass security mechanisms, potentially leading to privilege escalation.
QEMU +1
vulnerability
linux
virtualization
defense-evasion
privilege-escalation
collection
1t