virtio-win是virtio-win开源的一个虚拟机模拟软件。 virtio-win存在安全漏洞,该漏洞源于RhelDoUnMap函数未正确验证用户提供的描述符数量,可能导致缓冲区溢出和拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-5121 | 7.5 HIGH | Libarchive: libarchive: arbitrary code execution via integer overflow in iso9660 image pro |
| CVE-2026-5165 | 6.7 MEDIUM | Virtio-win: virtio-win: memory corruption via use-after-free in virtio blk device reset |
| CVE-2026-5119 | 5.9 MEDIUM | Libsoup: libsoup: information disclosure via cleartext transmission of cookies during http |
No comments yet