Known vulnerabilities in qemu-kvm (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:qemu-kvm_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 33
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting qemu-kvm (Red Hat package) qemu-kvm (Red Hat package) is affected by 33 known vulnerabilities: 2 high, 16 medium, 15 low Critical High Medium Low

Vulnerabilities (33)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU116886 - Use After Free
CVE-2025-11234
CWE-416 Medium
No
No
6.2.0-11.el9_0.10, 7.2.0-14.el9_2.24, 10.0.0-14.el10_1.5 10.10.2025 SB2025101011
SB2025122929
SB2026010596
and 20 more
#VU100251 - Memory corruption
CVE-2024-26327
CWE-119 Low
No
No
9.0.0-10.el9_5 12.11.2024 SB2024111273
SB2024111275
SB2024122903
and 3 more
#VU96080 - Improper Synchronization
CVE-2024-7409
CWE-662 Medium
No
No
7.2.0-14.el9_2.14, 8.2.0-11.el9_4.8, 9.0.0-10.el9_5 16.08.2024 SB2024081656
SB2024081658
SB2024081659
and 32 more
#VU89047 - Double Free
CVE-2024-3446
CWE-415 Low
No
No
9.0.0-10.el9_5 29.04.2024 SB2024042936
SB2024042938
SB2024042945
and 12 more
#VU87738 - NULL Pointer Dereference
CVE-2023-6683
CWE-476 Medium
No
No
8.2.0-11.el9_4 22.03.2024 SB2024032248
SB2024032249
SB2024032250
and 10 more
#VU85828 - Divide By Zero
CVE-2023-42467
CWE-369 Low
No
No
8.2.0-11.el9_4 26.01.2024 SB2024012620
SB2024012627
SB2024043004
and 4 more
#VU85827 - Improper Synchronization
CVE-2023-5088
CWE-662 Low
No
No
8.2.0-11.el9_4 26.01.2024 SB2024012618
SB2024012627
SB2024043004
and 5 more
#VU85734 - Use After Free
CVE-2023-3019
CWE-416 Low
No
No
8.2.0-11.el9_4 23.01.2024 SB2024012356
SB2024012360
SB2024013061
and 12 more
#VU83438 - Use After Free
CVE-2023-2680
CWE-416 High
No
No
8.0.0-16.el9_3 22.11.2023 SB20231018146
SB2023112308
#VU80015 - NULL Pointer Dereference
CVE-2023-3354
CWE-476 Medium
No
No
6.2.0-11.el9_0.8, 7.2.0-14.el9_2.5 25.08.2023 SB2023082524
SB2023082526
SB2023082840
and 19 more
#VU78946 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2023-3255
CWE-835 Medium
No
No
8.2.0-11.el9_4 04.08.2023 SB2023080416
SB2023080425
SB20230808136
and 13 more
#VU72307 - Integer underflow
CVE-2022-3165
CWE-191 Medium
No
No
7.2.0-14.el9_2 15.02.2023 SB2023021577
SB2023030828
SB2023041751
and 8 more
#VU72299 - Integer overflow
CVE-2022-4172
CWE-190 Medium
No
No
7.2.0-14.el9_2 15.02.2023 SB2023021573
SB2023021574
SB2023050972
and 6 more
#VU69353 - Use After Free
CVE-2021-3750
CWE-416 High
No
No
7.0.0-13.el9, 8.0.0-16.el9_3 15.11.2022 SB2022111536
SB2022111555
SB2023041751
and 12 more
#VU69352 - Out-of-bounds write
CVE-2021-3611
CWE-787 Medium
No
No
7.0.0-13.el9 15.11.2022 SB2022111536
SB2022111555
SB2021072178
and 8 more
#VU64569 - Heap-based Buffer Overflow
CVE-2021-3507
CWE-122 Medium
No
No
7.0.0-13.el9 21.06.2022 SB2021050640
SB2022062124
SB2022102676
and 9 more
#VU63781 - NULL Pointer Dereference
CVE-2021-4158
CWE-476 Low
No
No
7.0.0-13.el9 30.05.2022 SB2022022813
SB2022111555
SB2022102081
and 1 more
#VU50042 - Out-of-bounds read
CVE-2020-29443
CWE-125 Medium
No
No
1.5.3-175.el7_9.4 26.01.2021 SB2021012636
SB2021060940
SB2021061423
and 2 more
#VU44163 - Reachable Assertion
CVE-2020-16092
CWE-617 Medium
No
No
1.5.3-175.el7_9.3 11.08.2020 SB2020081102
SB2020090715
SB2020101311
and 9 more
#VU31806 - Out-of-bounds write
CVE-2020-13765
CWE-787 Medium
No
No
1.5.3-175.el7_9.3 24.07.2020 SB2020072412
SB2021020319
SB2021020411
and 5 more


Showing elements 1 - 20 out of 33