RHSA-2026:5578MediumCVSS 7.5

Red Hat Security Advisory: virt:rhel and virt-devel:rhel security update

Published
March 24, 2026
Last Modified
August 26, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2025-11234 — qemu-kvm: VNC WebSocket handshake use-after-free

🎯 Affected products200

  • Red Hat Enterprise Linux AppStream (v. 8)
  • Red Hat Enterprise Linux CRB (v. 8)
  • SLOF-0:20210217-2.module+el8.10.0+20141+6faa2812.noarch (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • SLOF-0:20210217-2.module+el8.10.0+20141+6faa2812.src (virt-devel:rhel) as a component of Red Hat Enterprise Linux CRB (v. 8)
  • SLOF-0:20210217-2.module+el8.10.0+20141+6faa2812.src (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-0:1.3.18-23.module+el8.9.0+18724+20190c23.aarch64 (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-0:1.3.18-23.module+el8.9.0+18724+20190c23.i686 (virt-devel:rhel) as a component of Red Hat Enterprise Linux CRB (v. 8)
  • hivex-0:1.3.18-23.module+el8.9.0+18724+20190c23.ppc64le (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-0:1.3.18-23.module+el8.9.0+18724+20190c23.s390x (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-0:1.3.18-23.module+el8.9.0+18724+20190c23.src (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-0:1.3.18-23.module+el8.9.0+18724+20190c23.x86_64 (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-debuginfo-0:1.3.18-23.module+el8.9.0+18724+20190c23.aarch64 (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-debuginfo-0:1.3.18-23.module+el8.9.0+18724+20190c23.i686 (virt-devel:rhel) as a component of Red Hat Enterprise Linux CRB (v. 8)
  • hivex-debuginfo-0:1.3.18-23.module+el8.9.0+18724+20190c23.ppc64le (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-debuginfo-0:1.3.18-23.module+el8.9.0+18724+20190c23.s390x (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-debuginfo-0:1.3.18-23.module+el8.9.0+18724+20190c23.x86_64 (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-debugsource-0:1.3.18-23.module+el8.9.0+18724+20190c23.aarch64 (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-debugsource-0:1.3.18-23.module+el8.9.0+18724+20190c23.i686 (virt-devel:rhel) as a component of Red Hat Enterprise Linux CRB (v. 8)
  • hivex-debugsource-0:1.3.18-23.module+el8.9.0+18724+20190c23.ppc64le (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-debugsource-0:1.3.18-23.module+el8.9.0+18724+20190c23.s390x (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-debugsource-0:1.3.18-23.module+el8.9.0+18724+20190c23.x86_64 (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-devel-0:1.3.18-23.module+el8.9.0+18724+20190c23.aarch64 (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-devel-0:1.3.18-23.module+el8.9.0+18724+20190c23.i686 (virt-devel:rhel) as a component of Red Hat Enterprise Linux CRB (v. 8)
  • hivex-devel-0:1.3.18-23.module+el8.9.0+18724+20190c23.ppc64le (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-devel-0:1.3.18-23.module+el8.9.0+18724+20190c23.s390x (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • hivex-devel-0:1.3.18-23.module+el8.9.0+18724+20190c23.x86_64 (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • libguestfs-1:1.44.0-9.module+el8.9.0+18724+20190c23.aarch64 (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • libguestfs-1:1.44.0-9.module+el8.9.0+18724+20190c23.ppc64le (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • libguestfs-1:1.44.0-9.module+el8.9.0+18724+20190c23.s390x (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • libguestfs-1:1.44.0-9.module+el8.9.0+18724+20190c23.src (virt:rhel) as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • +170 more not shown

✅ Remediation

For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258

🔗 References (5)