Skip to content
ThreatCluster

Multiple CVEs Addressed in SCSI and QEMU Components

First seen 18 Feb 2026, 12:23 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 16:10 UTC

On February 18, 2026, Microsoft published information on several CVEs affecting SCSI and QEMU components. These vulnerabilities include potential memory corruption in qla2xxx (CVE-2024-42288), a kernel oops issue in qla1280 (CVE-2025-21957), and a dma reentrancy issue in lsi53c895a leading to stack overflow (CVE-2023-0330). The affected components are critical for system stability and performance.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 183d ago How this analysis works

Timeline

2023-03-06
CVE-2023-0330 published
2024-08-17
CVE-2024-42286 published
2024-08-17
CVE-2024-42288 published
2025-04-01
CVE-2025-21957 published
2026-02-18
Microsoft publishes information on multiple CVEs

More articles in this cluster (9)

Following this threat?

Track CVE-2023-0330 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed