RHSA-2020:3906
Advisory lineage Upstream: 2 Downstream: 0
Upstream
Published: 13 Sept 2024, 16:20
Last modified:22 Nov 2025, 12:08
Vulnerability Summary
Overall Risk (default)
low
21/100 CVSS Score
5.3 MEDIUM
3.0 (osv_red_hat)
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
13 Sept 2024, 16:20
Published
Vulnerability first disclosed
22 Nov 2025, 12:08
Last Modified
Vulnerability information updated
Description
Red Hat Security Advisory: qemu-kvm security, bug fix, and enhancement update
CVSS Metrics
- v3.0•MEDIUM•Score: 5.3CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L
Affected Systems
- redhat•qemu-img
< 10:1.5.3-175.el7 | < 10:1.5.3-175.el7 | < 10:1.5.3-175.el7 | < 10:1.5.3-175.el7
- redhat•qemu-kvm
< 10:1.5.3-175.el7 | < 10:1.5.3-175.el7 | < 10:1.5.3-175.el7 | < 10:1.5.3-175.el7
- redhat•qemu-kvm-common
< 10:1.5.3-175.el7 | < 10:1.5.3-175.el7 | < 10:1.5.3-175.el7 | < 10:1.5.3-175.el7
- redhat•qemu-kvm-debuginfo
< 10:1.5.3-175.el7 | < 10:1.5.3-175.el7 | < 10:1.5.3-175.el7 | < 10:1.5.3-175.el7
- redhat•qemu-kvm-tools
< 10:1.5.3-175.el7 | < 10:1.5.3-175.el7 | < 10:1.5.3-175.el7 | < 10:1.5.3-175.el7
References (15)
- https://access.redhat.com/errata/RHSA-2020:3906
- https://access.redhat.com/security/updates/classification/#low
- https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/7.9_release_notes/index
- https://bugzilla.redhat.com/show_bug.cgi?id=1615637
- https://bugzilla.redhat.com/show_bug.cgi?id=1791679
- https://bugzilla.redhat.com/show_bug.cgi?id=1802215
- https://bugzilla.redhat.com/show_bug.cgi?id=1810390
- https://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_3906.json
- https://access.redhat.com/security/cve/CVE-2018-15746
- https://www.cve.org/CVERecord?id=CVE-2018-15746
- https://nvd.nist.gov/vuln/detail/CVE-2018-15746
- https://access.redhat.com/security/cve/CVE-2019-20382
- https://www.cve.org/CVERecord?id=CVE-2019-20382
- https://nvd.nist.gov/vuln/detail/CVE-2019-20382
- https://www.openwall.com/lists/oss-security/2020/03/05/1