CVE-2022-46770: Linuxfoundation Mirage Firewall
High severity, CVSS 7.5. EPSS: 22.4% chance of exploitation in the next 30 days.
qubes-mirage-firewall (aka Mirage firewall for QubesOS) 0.8.x through 0.8.3 allows guest OS users to cause a denial of service (CPU consumption and loss of forwarding) via a crafted multicast UDP packet (IP address range of 224.0.0.0 through 239.255.255.255).
Affected products
- Linuxfoundation Mirage Firewall: from 0.8.0, before 0.8.4 (fixed in 0.8.4)
Published 2022-12-07. Last modified 2026-06-17.