CVE-2017-7471
09.07.2018, 14:29
Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System (9pfs) support, is vulnerable to an improper access control issue. It could occur while accessing files on a shared host directory. A privileged user inside guest could use this flaw to access host file system beyond the shared folder and potentially escalating their privileges on a host.Enginsight
Vendor | Product | Version |
---|---|---|
qemu | qemu | 𝑥 ≤ 2.8.1.1 |
qemu | qemu | 2.9.0:rc0 |
qemu | qemu | 2.9.0:rc1 |
qemu | qemu | 2.9.0:rc2 |
qemu | qemu | 2.9.0:rc3 |
qemu | qemu | 2.9.0:rc4 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References