Database/Kernel, userspace & hypervisor
QEMU virtio-blk: malformed guest SCSI request causes host-heap out-of-bounds write
Impact
QEMU's virtio-blk device fails to validate input descriptor sizes before writing, so a guest can submit a malformed virtio-blk SCSI request and force an out-of-bounds write in the QEMU process's host heap. Red Hat scores the confirmed outcome as denial of service of the QEMU process with a scope change, meaning a single tenant VM can kill its own hypervisor process and, given a heap write primitive, the blast radius on a shared host is worth assuming to be larger than DoS until proven otherwise. On a GPU cloud that rents out passthrough or vGPU-backed VMs, this is a tenant-reachable bug against the host-side emulator on a node that is expensive to evacuate. The record notes it requires high privileges inside the guest - i.e. root in the tenant VM, which a tenant normally has.
Who can reach it
A malicious guest with root/high privileges inside a VM backed by QEMU virtio-blk. No host credentials needed; reachable from any tenant VM using virtio-blk storage.
What to do
Apply the QEMU/qemu-kvm update from your distribution - Red Hat ships RHSA-2026:39311, and the upstream fix is on qemu-devel (posting 20260526154957.1741622-1-stefanha@redhat.com). Running VMs keep the old QEMU binary until they are restarted, so each guest must be live-migrated or shut down and restarted after the package update; plan a rolling migration rather than expecting the package upgrade alone to close it.
References
Related entries
- Linux kernel (AF_UNIX): Use-after-free in unix_stream_sendpage - local privilege escalation, no capabilities neededCVE-2023-4622 · Linux kernel (AF_UNIX)Medium
- Linux kernel (net/sched ETS): Out-of-bounds indexing in the ETS qdisc - memory corruption from CAP_NET_ADMINCVE-2025-21692 · Linux kernel (net/sched ETS)Medium
- Linux kernel (drivers/bus/fsl-mc): The fsl-mc bus read its driver_override string without holding the device lock, soCVE-2026-53115 · Linux kernel (drivers/bus/fsl-mc)Medium
- Linux kernel (drivers/pci): The PCI bus match callback read driver_override without the device lock, so the overrideCVE-2026-53120 · Linux kernel (drivers/pci)Medium
- Linux KVM (arch/x86/kvm/svm.c, vmx.c) and Xen 4.3.x-4.6.x - #AC exception handling: A guest raises alignment-checkCVE-2015-5307 · Linux KVM (arch/x86/kvm/svm.c, vmx.c) and Xen 4.3.x-4.6.x - #AC exception handlingMedium
- Xen PCI passthrough - device memory/IO decoding and host memory initialisation: With memory and I/O decoding leftCVE-2015-8553 · Xen PCI passthrough - device memory/IO decoding and host memory initialisationMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.