CVE-2025-54567: Qemu

Medium severity, CVSS 5.4. EPSS: 0.2% chance of exploitation in the next 30 days.

hw/pci/pcie_sriov.c in QEMU through 10.0.3 mishandles the VF Enable bit write mask, a related issue to CVE-2024-26327.

Affected products

  • Qemu Qemu: up to and including 10.0.3

Published 2025-07-25. Last modified 2026-06-17.