Lucene search

K
cvelistRedhatCVELIST:CVE-2022-26354
HistoryMar 16, 2022 - 2:02 p.m.

CVE-2022-26354

2022-03-1614:02:34
CWE-772
redhat
www.cve.org
5
qemu
vhost-vsock
memory leakage
cve-2022-26354

AI Score

5.8

Confidence

Low

EPSS

0.001

Percentile

16.3%

A flaw was found in the vhost-vsock device of QEMU. In case of error, an invalid element was not detached from the virtqueue before freeing its memory, leading to memory leakage and other unexpected results. Affected QEMU versions <= 6.2.0.

CNA Affected

[
  {
    "product": "qemu-kvm",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Affected QEMU versions <= 6.2.0"
      }
    ]
  }
]