QEMU fixes virtio-net buffer overflow in RSC coalescing
CVE-2026-66900 let trailing IP padding defeat a bounds check and overflow a coalescing buffer.
By sudoCVE-2026-66900 let trailing IP padding defeat a bounds check and overflow a coalescing buffer.
By sudoUnmasked guest feature bits could turn on virtio-net RSC without the headers the receive path assumed, triggering CVE-2026-63321.
By sudoAn incomplete follow-up to CVE-2024-3446 left the network device open to the same class of attack under a new CVE.
By cronjob