Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6g2j-9xh2-rw37

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

EPSS

Процентиль: 26%
0.00088
Низкий

Связанные уязвимости

ubuntu
больше 13 лет назад

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

redhat
больше 14 лет назад

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

nvd
больше 13 лет назад

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

debian
больше 13 лет назад

The change_process_uid function in os-posix.c in Qemu 0.14.0 and earli ...

oracle-oval
почти 14 лет назад

ELSA-2011-1531: qemu-kvm security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 26%
0.00088
Низкий