PT-2018-8389 · Qemu+2 · Qemu+2

Prasad Pandit

·

Published

2017-04-25

·

Updated

2024-06-15

·

CVE-2017-7471

CVSS v3.1

9.0

Critical

VectorAV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Qemu (affected versions not specified)
Description The issue is related to an improper access control problem in Qemu when built with VirtFS and 9pfs support. This could allow a privileged user inside a guest to access the host file system beyond the shared folder, potentially escalating their privileges on the host.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Permission

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2017-1521
CVE-2017-7471
DLA-1035-1
OPENSUSE-SU-2017_1872-1
OPENSUSE-SU-2024:11287-1
SUSE-SU-2017:1774-1
SUSE-SU-2017:2946-1
SUSE-SU-2017:2963-1
SUSE-SU-2017:2969-1
SUSE-SU-2017:3084-1

Affected Products

Alt Linux
Qemu
Suse