OESA-2026-3273

Source
https://www.openeuler.org/en/security/security-bulletins/detail/?id=openEuler-SA-2026-3273
Import Source
https://repo.openeuler.org/security/data/osv/OESA-2026-3273.json
JSON Data
https://api.osv.dev/v1/vulns/OESA-2026-3273
Upstream
  • CVE-2026-15578
  • CVE-2026-15705
  • CVE-2026-16043
  • CVE-2026-61475
  • CVE-2026-63319
  • CVE-2026-8348
  • CVE-2026-9238
Published
2026-08-07T02:43:05Z
Modified
2026-08-07T03:00:59.369276788Z
Severity
  • 8.2 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H CVSS Calculator
Summary
qemu security update
Details

QEMU is a FAST! processor emulator using dynamic translation to achieve good emulation speed.

Security Fix(es):

A security vulnerability exists in QEMU, the details of which have not been fully disclosed.(CVE-2026-15578)

CVE-2026-15705 is an undisclosed vulnerability in QEMU. The vulnerability has been identified in QEMU, but specific technical details and impact scope have not yet been publicly disclosed.(CVE-2026-15705)

A security vulnerability exists in QEMU. Detailed vulnerability information has not yet been disclosed. This vulnerability affects all versions.(CVE-2026-16043)

In the Linux kernel, the following vulnerabilities have been addressed: bpf: Support hardened BPF for JIT injection. The JIT allocator packages many small programs into larger executable allocations and reuses space in these allocations, loading and freeing them just like programs. When new code is written to the space of the previous code, the program is occupied, and indirect jumps to the new program can reuse the oracles left by the old oracles in the branch. Flush indirect branch predictors before reusing JIT memory so that indirect jumps to a newly written program do not reuse predictions from an old program that occupies the same space. Introduced bpfarchpredflushenabled static key and bpfarchpred_flush static call for refreshing the branch predictor of JIT memory reuse. Schemas that need to be refreshed can update them with the predictor refresh function. By default, it is a NOP and no CALLs will be issued. Allocations larger than the package are not covered by this flush. That's safe because the cBPF program (unprivileged attack surface) is well constrained below the package size. If this assumption is violated, a warning is issued while flushing is active.(CVE-2026-61475)

An undisclosed vulnerability exists in QEMU, with no detailed vulnerability description available at this time.(CVE-2026-63319)

An undisclosed vulnerability exists in QEMU. Currently, only limited vulnerability information is available, and the specific impact scope and details have not been publicly disclosed.(CVE-2026-8348)

An undisclosed vulnerability exists in QEMU, the details of which have not yet been publicly disclosed.(CVE-2026-9238)

Database specific
{
    "severity": "High"
}
References

Affected packages

openEuler:22.03-LTS-SP4 / qemu

Package

Name
qemu
Purl
pkg:rpm/openEuler/qemu&distro=openEuler-22.03-LTS-SP4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.2.0-117.oe2203sp4

Ecosystem specific

{
    "noarch": [
        "qemu-help-6.2.0-117.oe2203sp4.noarch.rpm"
    ],
    "x86_64": [
        "qemu-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-block-curl-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-block-iscsi-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-block-rbd-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-block-ssh-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-debuginfo-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-debugsource-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-guest-agent-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-hw-usb-host-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-img-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-seabios-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-system-aarch64-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-system-arm-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-system-riscv-6.2.0-117.oe2203sp4.x86_64.rpm",
        "qemu-system-x86_64-6.2.0-117.oe2203sp4.x86_64.rpm"
    ],
    "src": [
        "qemu-6.2.0-117.oe2203sp4.src.rpm"
    ],
    "aarch64": [
        "qemu-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-block-curl-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-block-iscsi-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-block-rbd-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-block-ssh-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-debuginfo-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-debugsource-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-guest-agent-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-hw-usb-host-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-img-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-system-aarch64-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-system-arm-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-system-riscv-6.2.0-117.oe2203sp4.aarch64.rpm",
        "qemu-system-x86_64-6.2.0-117.oe2203sp4.aarch64.rpm"
    ]
}

Database specific

source
"https://repo.openeuler.org/security/data/osv/OESA-2026-3273.json"