Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-35517

Опубликовано: 28 янв. 2021
Источник: ubuntu
Приоритет: medium
CVSS2: 4.6
CVSS3: 8.2

Описание

A flaw was found in qemu. A host privilege escalation issue was found in the virtio-fs shared file system daemon where a privileged guest user is able to create a device special file in the shared directory and use it to r/w access host devices.

РелизСтатусПримечание
bionic

not-affected

code not present
devel

released

1:5.2+dfsg-6ubuntu2
esm-infra-legacy/trusty

not-affected

code not present
esm-infra/bionic

not-affected

code not present
esm-infra/focal

not-affected

code not present
esm-infra/xenial

not-affected

code not present
focal

not-affected

code not present
groovy

released

1:5.0-5ubuntu9.9
hirsute

released

1:5.2+dfsg-6ubuntu2
impish

released

1:5.2+dfsg-6ubuntu2

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

hirsute

DNE

impish

DNE

jammy

DNE

precise/esm

not-affected

code not present

Показывать по

4.6 Medium

CVSS2

8.2 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
больше 4 лет назад

A flaw was found in qemu. A host privilege escalation issue was found in the virtio-fs shared file system daemon where a privileged guest user is able to create a device special file in the shared directory and use it to r/w access host devices.

CVSS3: 8.2
nvd
больше 4 лет назад

A flaw was found in qemu. A host privilege escalation issue was found in the virtio-fs shared file system daemon where a privileged guest user is able to create a device special file in the shared directory and use it to r/w access host devices.

CVSS3: 8.2
debian
больше 4 лет назад

A flaw was found in qemu. A host privilege escalation issue was found ...

rocky
больше 4 лет назад

Important: virt:rhel and virt-devel:rhel security update

CVSS3: 8.2
github
около 3 лет назад

A flaw was found in qemu. A host privilege escalation issue was found in the virtio-fs shared file system daemon where a privileged guest user is able to create a device special file in the shared directory and use it to r/w access host devices.

4.6 Medium

CVSS2

8.2 High

CVSS3