PT-2018-8389 · Qemu+2 · Qemu+2

Prasad Pandit

·

Publicado

2017-04-25

·

Atualizado

2024-06-15

·

CVE-2017-7471

CVSS v3.1

9.0

Crítica

VetorAV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Qemu (affected versions not specified)
Description The issue is related to an improper access control problem in Qemu when built with VirtFS and 9pfs support. This could allow a privileged user inside a guest to access the host file system beyond the shared folder, potentially escalating their privileges on the host.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Permission

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2017-1521
CVE-2017-7471
DLA-1035-1
OPENSUSE-SU-2017_1872-1
OPENSUSE-SU-2024:11287-1
SUSE-SU-2017:1774-1
SUSE-SU-2017:2946-1
SUSE-SU-2017:2963-1
SUSE-SU-2017:2969-1
SUSE-SU-2017:3084-1

Produtos afetados

Alt Linux
Qemu
Suse