Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Shi Weiming

#44220of 56,330
6.5Total CVSS
Vulnerabilities · 1
PT-2026-51663
6.5
2026-06-24
Qemu · Qemu · CVE-2026-9539
**Name of the Vulnerable Software and Affected Versions** libslirp versions prior to 4.9.2 **Description** An integer underflow and out-of-bounds heap read exist in the TCP urgent data handling (sosendoob) within hypervisor host environments, such as QEMU. A privileged attacker in a guest VM (possessing root or `CAP NET RAW` privileges) can leak significant amounts of sensitive host-process heap memory by sending crafted TCP segments with manipulated URG flags and urgent pointers `ti urp`. Real-world incidents have demonstrated that this issue can be chained to achieve arbitrary read and write access on the host. **Recommendations** Update libslirp to version 4.9.2 or later.