{"schema_version":"1.9.0","id":"CVE-2022-26354","published":"2022-03-16T14:02:34Z","modified":"2026-08-12T13:00:30.922711Z","related":["ALSA-2022:5263","ALSA-2022:5821","SUSE-SU-2022:2254-1","SUSE-SU-2022:2260-1","SUSE-SU-2023:0761-1","SUSE-SU-2023:3721-1","SUSE-SU-2023:3800-1","openSUSE-SU-2024:12209-1"],"details":"A flaw was found in the vhost-vsock device of QEMU. In case of error, an invalid element was not detached from the virtqueue before freeing its memory, leading to memory leakage and other unexpected results. Affected QEMU versions <= 6.2.0.","affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/qemu/qemu","events":[{"introduced":"0"},{"last_affected":"44f28df24767cf9dca1ddc9b23157737c4cbb645"}],"database_specific":{"cpe":"cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"6.2.0"}],"source":"CPE_RANGE"}},{"type":"GIT","repo":"https://gitlab.com/qemu-project/qemu","events":[{"introduced":"0"},{"fixed":"8d1b247f3748ac4078524130c6d7ae42b6140aaf"}],"database_specific":{"cpe":"cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"6.2.0"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["Affected QEMU versions <= 6.2.0","v6.2.0","v6.2.0-rc4","v6.1.0","v6.2.0-rc3","v6.2.0-rc1","v6.2.0-rc0","v6.0.0","v6.1.0-rc4","v6.1.0-rc3","v6.1.0-rc2","v6.1.0-rc1","v6.1.0-rc0","v6.0.0-rc5","v6.0.0-rc4","v6.0.0-rc3","v6.0.0-rc2","v6.0.0-rc1","v6.0.0-rc0","v5.2.0","v5.2.0-rc4","v5.2.0-rc3","v5.2.0-rc2","v5.2.0-rc1","v5.2.0-rc0","v5.0.0","v5.1.0","v5.1.0-rc3","v5.1.0-rc2","v5.1.0-rc1","v5.1.0-rc0","v4.2.0","v5.0.0-rc4","v5.0.0-rc3","v5.0.0-rc2","v5.0.0-rc1","v5.0.0-rc0","v4.2.0-rc5","v4.2.0-rc4","v4.2.0-rc3","v4.2.0-rc2","v4.2.0-rc1","v4.2.0-rc0","v4.1.0","v4.0.0","v4.1.0-rc5","v4.1.0-rc4","v4.1.0-rc3","v4.1.0-rc2","v4.1.0-rc1","v4.1.0-rc0","v4.0.0-rc4","v4.0.0-rc3","v4.0.0-rc2","v4.0.0-rc1","v3.1.0","v4.0.0-rc0","v3.0.0","v3.1.0-rc5","v3.1.0-rc4","v3.1.0-rc3","v3.1.0-rc2","v3.1.0-rc1","v3.1.0-rc0","v3.0.0-rc4","v3.0.0-rc3","v3.0.0-rc2","v3.0.0-rc1","v3.0.0-rc0","v2.12.0","v2.12.0-rc4","v2.12.0-rc3","v2.12.0-rc2","v2.12.0-rc1","v2.12.0-rc0","v2.11.0","v2.11.0-rc5","v2.11.0-rc4","v2.11.0-rc3","v2.11.0-rc2","v2.11.0-rc1","v2.11.0-rc0","v2.10.0","v2.10.0-rc4","v2.10.0-rc3","v2.10.0-rc2","v2.10.0-rc1","v2.9.0","v2.10.0-rc0","v2.9.0-rc5","v2.9.0-rc4","v2.9.0-rc3","v2.9.0-rc2","v2.9.0-rc1","v2.8.0","v2.9.0-rc0","v2.8.0-rc4","v2.8.0-rc3","v2.8.0-rc2","v2.8.0-rc1","v2.8.0-rc0","v2.7.0","v2.7.0-rc5","v2.7.0-rc4","v2.7.0-rc3","v2.7.0-rc2","v2.6.0","v2.7.0-rc1","v2.7.0-rc0","v2.6.0-rc5","v2.6.0-rc4","v2.6.0-rc3","v2.6.0-rc2","v2.6.0-rc1","v2.6.0-rc0","v2.5.0","v2.5.0-rc4","v2.5.0-rc3","v2.5.0-rc2","v2.5.0-rc1","v2.5.0-rc0","v2.4.0","v2.4.0-rc4","v2.4.0-rc3","v2.3.0","v2.4.0-rc2","v2.4.0-rc1","v2.4.0-rc0","v2.3.0-rc4","v2.3.0-rc3","v2.3.0-rc2","v2.3.0-rc1","v2.3.0-rc0","v2.2.0","v2.2.0-rc3","v2.2.0-rc5","v2.2.0-rc4","v2.2.0-rc2","v2.2.0-rc1","v2.2.0-rc0","v2.1.0","v2.1.0-rc5","v2.1.0-rc4","v2.1.0-rc2","v2.1.0-rc3","v2.0.0","v2.1.0-rc1","v2.1.0-rc0","v2.0.0-rc3","v2.0.0-rc2","v2.0.0-rc1","v2.0.0-rc0","v1.7.0","v1.7.0-rc2","v1.7.0-rc1","v1.7.0-rc0","v1.6.0","v1.6.0-rc3","v1.6.0-rc2","v1.6.0-rc1","v1.6.0-rc0","v1.5.0","v1.5.0-rc3","v1.5.0-rc2","v1.5.0-rc1","v1.5.0-rc0","v1.4.0","v1.4.0-rc2","v1.4.0-rc1","v1.4.0-rc0","v1.3.0","v1.3.0-rc2","v1.3.0-rc1","v1.3.0-rc0","v1.2.0","v1.2.0-rc3","v1.2.0-rc2","v1.2.0-rc1","v1.2.0-rc0","v1.1.0","v1.1.0-rc4","v1.1.0-rc3","v1.1.0-rc2","v1.1-rc2","v1.1-rc1","v1.1-rc0","v1.0","v1.0-rc4","v1.0-rc3","v1.0-rc2","v1.0-rc1","v1.0-rc0","v0.14.0-rc0","v0.13.0-rc0","v0.12.0-rc0","v0.11.0-rc0","v0.5.0","v0.4.4","v0.4.3","v0.4.2","v0.4.1","v0.4.0","v0.3.0","v0.2.0","v0.1.6","v0.1.5","v0.1.4","v0.1.3","v0.1.1","v0.1.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-26354.json","vanir_signatures":[{"deprecated":false,"digest":{"line_hashes":["150685046898200825531275374665788403731","98767810269483830226517646970088866016","65754744766512746692946443194331408543","1645909178314727891859243446235319651","49829253103459717664959038597208773436","186256933642896597950860797149857926027","64736883540978123234233280129738055142","213029201505921375512232112691729611678","171363998524641229115396769659998265802","329381322873956341303993501833203737345","63474567740543798851459456930150109058","125895656722170808569543452862888069320","71250291856525491865579188782693972602"],"threshold":0.9},"id":"CVE-2022-26354-34b56829","signature_type":"Line","signature_version":"v1","source":"https://gitlab.com/qemu-project/qemu@8d1b247f3748ac4078524130c6d7ae42b6140aaf","target":{"file":"hw/virtio/vhost-vsock-common.c"}},{"deprecated":false,"digest":{"function_hash":"27589250138002941939445897163506551638","length":717},"id":"CVE-2022-26354-d0fcd8ee","signature_type":"Function","signature_version":"v1","source":"https://gitlab.com/qemu-project/qemu@8d1b247f3748ac4078524130c6d7ae42b6140aaf","target":{"file":"hw/virtio/vhost-vsock-common.c","function":"vhost_vsock_common_send_transport_reset"}}],"vanir_signatures_modified":"2026-08-12T13:00:30Z"}}],"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/26xxx/CVE-2022-26354.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-26354"},{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/202208-27"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20220425-0003/"},{"type":"ADVISORY","url":"https://www.debian.org/security/2022/dsa-5133"},{"type":"FIX","url":"https://gitlab.com/qemu-project/qemu/-/commit/8d1b247f3748ac4078524130c6d7ae42b6140aaf"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2022/04/msg00002.html"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2022/09/msg00008.html"}],"database_specific":{"cna_assigner":"redhat","cwe_ids":["CWE-772"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/26xxx/CVE-2022-26354.json"}}