CVE-2025-54566: Medium severity Qemu Qemu vulnerability
Published Jul 25, 2025
·Updated
hw/pci/pciesriov.c in QEMU through 10.0.3 has a migration state inconsistency, a related issue to CVE-2024-26327.
Affected Software
2 affected components
Qemu Qemu<10.0.3
Qemu Qemu<=10.0.3
Event History
Jul 25, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-54566?
CVE-2025-54566 is classified as a medium severity vulnerability due to its potential impact on migration state consistency in QEMU.
2
How do I fix CVE-2025-54566?
To fix CVE-2025-54566, update QEMU to version 10.0.4 or later, which addresses the migration state inconsistency.
3
What is the impact of CVE-2025-54566 on QEMU?
CVE-2025-54566 can lead to inconsistent migration states, which may cause virtual machine instability or data corruption.
4
When was CVE-2025-54566 reported?
CVE-2025-54566 was reported in 2025 as a result of ongoing security assessments in QEMU.
5
Which versions of QEMU are affected by CVE-2025-54566?
CVE-2025-54566 affects all QEMU versions prior to 10.0.4.