Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 12 Jun 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat enterprise Linux For Nvidia 26
Redhat openshift Container Platform |
|
| Vendors & Products |
Redhat enterprise Linux For Nvidia 26
Redhat openshift Container Platform |
Fri, 12 Jun 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 12 Jun 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit this vulnerability by submitting a malformed virtio-blk SCSI request, leading to an out-of-bounds write in the host heap memory and a potential denial of service (DoS) for the QEMU process. | |
| Title | Qemu-kvm: heap buffer overflow in virtio-blk scsi request handling | |
| First Time appeared |
Redhat
Redhat enterprise Linux Redhat enterprise Linux Nvidia Redhat openshift |
|
| Weaknesses | CWE-122 | |
| CPEs | cpe:/a:redhat:enterprise_linux_nvidia: cpe:/a:redhat:openshift:4 cpe:/o:redhat:enterprise_linux:10 cpe:/o:redhat:enterprise_linux:6 cpe:/o:redhat:enterprise_linux:7 cpe:/o:redhat:enterprise_linux:8 cpe:/o:redhat:enterprise_linux:9 |
|
| Vendors & Products |
Redhat
Redhat enterprise Linux Redhat enterprise Linux Nvidia Redhat openshift |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-06-15T13:00:33.022Z
Reserved: 2026-05-26T12:51:11.502Z
Link: CVE-2026-48914
Updated: 2026-06-12T09:57:47.176Z
Status : Awaiting Analysis
Published: 2026-06-12T10:16:22.177
Modified: 2026-06-12T16:06:17.027
Link: CVE-2026-48914
No data.
OpenCVE Enrichment
Updated: 2026-06-12T20:20:45Z