Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-2527

Опубликовано: 21 июн. 2012
Источник: debian

Описание

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
qemu-kvmfixed0.14.1+dfsg-3package
kvmnot-affectedpackage

Связанные уязвимости

ubuntu
около 13 лет назад

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

redhat
около 14 лет назад

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

nvd
около 13 лет назад

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

github
больше 3 лет назад

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

oracle-oval
больше 13 лет назад

ELSA-2011-1531: qemu-kvm security, bug fix, and enhancement update (MODERATE)