CVE Tools

Virtualization Host

84 CVEs tracked. 4 of them are in CISA KEV.

This hub aggregates every CVE we track for Virtualization Host, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.

Virtualization Host CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Virtualization Host CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 84 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical56%
  • High4554%
  • Medium3238%
  • Low22%

Latest CVEs

The 15 most recently published vulnerabilities affecting Virtualization Host.

  1. CVE-2023-3758Sssd: race condition during authorization leads to gpo policies functioning inconsistently7.1
  2. CVE-2023-6536Kernel: null pointer dereference in __nvmet_req_complete6.5
  3. CVE-2023-6535Kernel: null pointer dereference in nvmet_tcp_execute_request6.5
  4. CVE-2023-6356Kernel: null pointer dereference in nvmet_tcp_build_iovec6.5
  5. CVE-2023-4911Glibc: buffer overflow in ld.so leading to privilege escalation7.8
  6. CVE-2022-0207A race condition was found in vdsm. Functionality to obfuscate sensitive values in log files that may lead to values being stored in clear text.4.7
  7. CVE-2021-3669A flaw was found in the Linux kernel. Measuring usage of the shared memory does not scale with large shared memory segment counts which could lead to resource exhaustion and DoS.5.5
  8. CVE-2021-20316A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permissions to read or modify share metadata, to perform this operation outside of...6.8
  9. CVE-2021-3659A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking subsystem in the way the user closes the LR-WPAN connection. This flaw allows a local user to cra...5.5
  10. CVE-2022-0330A random memory access flaw was found in the Linux kernel's GPU i915 kernel driver functionality in the way a user may run malicious code on the GPU. This flaw allows a local user to crash the syst...7.8
  11. CVE-2022-0435A stack overflow flaw was found in the Linux kernel's TIPC protocol functionality in the way a user sends a packet with malicious content where the number of domain member nodes is higher than the ...8.8
  12. CVE-2022-1011A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user triggers write(). This flaw allows a local user to gain unauthorized access to data from the FUSE filesyste...7.8
  13. CVE-2022-0516A vulnerability was found in kvm_s390_guest_sida_op in the arch/s390/kvm/kvm-s390.c function in KVM for s390 in the Linux kernel. This flaw allows a local attacker with a normal user privilege to o...7.8
  14. CVE-2022-0847A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux kernel and could thu...7.8
  15. CVE-2021-3656A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMCB (virtual machine control block) provided by the L1 guest to spawn/handle a ...8.8

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store