HomeDefectsLIN1022-23962
Acknowledged

LIN1022-23962 : Security Advisory - qemu - CVE-2022-26354

Created: Apr 28, 2026    Updated: Apr 30, 2026
Found In Version: 10.22.33.24
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Userspace

Description

A flaw was found in the vhost-vsock device of QEMU. In case of error, an invalid element was not detached from the virtqueue before freeing its memory, leading to memory leakage and other unexpected results. Affected QEMU versions <= 6.2.0.

https://nvd.nist.gov/vuln/detail/CVE-2022-26354