A
n off-by-one error was found in QEMU's KVM Xen guest support. A malicious guest could use this flaw to trigger out-of-bounds heap accesses in the QEMU process via the emulated Xen physdev hypercall interface, leading to a denial of service or potential memory corruption.
References
Configurations
No configuration.
History
18 Feb 2026, 21:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-18 21:16
Updated : 2026-02-19 15:53
NVD link : CVE-2026-0665
Mitre link : CVE-2026-0665
CVE.ORG link : CVE-2026-0665
JSON object : View
Products Affected
No product.
CWE
CWE-787
Out-of-bounds Write