CVE-2013-2231
published 2013-10-01CVE-2013-2231: Unquoted Windows search path vulnerability in the QEMU Guest Agent service for Red Hat Enterprise Linux Desktop 6, HPC Node 6, Server 6, Workstation 6, Desktop…
PriorityP427high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.45%
36.3th percentile
Unquoted Windows search path vulnerability in the QEMU Guest Agent service for Red Hat Enterprise Linux Desktop 6, HPC Node 6, Server 6, Workstation 6, Desktop Supplementary 6, Server Supplementary 6, Supplementary AUS 6.4, Supplementary EUS 6.4.z, and Workstation Supplementary 6, when installing on Windows, allows local users to gain privileges via a crafted program in an unspecified folder.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | qemu | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux_desktop_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary | — | — |
| redhat | enterprise_linux_workstation_supplementary | — | — |
CVSS provenance
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
vendor_debian7.2LOW
vendor_redhat7.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-2v34-6f5w-w54r: Unquoted Windows search path vulnerability in the QEMU Guest Agent service for Red Hat Enterprise Linux Desktop 6, HPC Node 6, Server 6, Workstation 6
ghsa_unreviewed·2022-05-14
CVE-2013-2231 [HIGH] GHSA-2v34-6f5w-w54r: Unquoted Windows search path vulnerability in the QEMU Guest Agent service for Red Hat Enterprise Linux Desktop 6, HPC Node 6, Server 6, Workstation 6
Unquoted Windows search path vulnerability in the QEMU Guest Agent service for Red Hat Enterprise Linux Desktop 6, HPC Node 6, Server 6, Workstation 6, Desktop Supplementary 6, Server Supplementary 6, Supplementary AUS 6.4, Supplementary EUS 6.4.z, and Workstation Supplementary 6, when installing on Windows, allows local users to gain privileges via a crafted program in an unspecified folder.
Red Hat
qemu: qemu-ga win32 service unquoted search path
vendor_redhat·2013-07-22·CVSS 7.2
CVE-2013-2231 [HIGH] CWE-428 qemu: qemu-ga win32 service unquoted search path
qemu: qemu-ga win32 service unquoted search path
Unquoted Windows search path vulnerability in the QEMU Guest Agent service for Red Hat Enterprise Linux Desktop 6, HPC Node 6, Server 6, Workstation 6, Desktop Supplementary 6, Server Supplementary 6, Supplementary AUS 6.4, Supplementary EUS 6.4.z, and Workstation Supplementary 6, when installing on Windows, allows local users to gain privileges via a crafted program in an unspecified folder.
Statement: This issue does not affect the kvm package as shipped with Red Hat Enterprise Linux 5.
This issue does not affect the xen package as shipped with Red Hat Enterprise Linux 5.
This issue does affect the qemu-kvm package as shipped with Red Hat Enterprise Linux 6. Future qemu-kvm updates in Red Hat Enterprise Linux 6 may address this flaw.
Pa
Debian
CVE-2013-2231: qemu - Unquoted Windows search path vulnerability in the QEMU Guest Agent service for R...
vendor_debian·2013·CVSS 7.2
CVE-2013-2231 [HIGH] CVE-2013-2231: qemu - Unquoted Windows search path vulnerability in the QEMU Guest Agent service for R...
Unquoted Windows search path vulnerability in the QEMU Guest Agent service for Red Hat Enterprise Linux Desktop 6, HPC Node 6, Server 6, Workstation 6, Desktop Supplementary 6, Server Supplementary 6, Supplementary AUS 6.4, Supplementary EUS 6.4.z, and Workstation Supplementary 6, when installing on Windows, allows local users to gain privileges via a crafted program in an unspecified folder.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
Bugzilla
qemu: CVE-2013-2231 qemu: qemu-ga win32 service unquoted search path [fedora-all]
bugzilla·2013-07-22·CVSS 7.2
CVE-2013-2231 [HIGH] qemu: CVE-2013-2231 qemu: qemu-ga win32 service unquoted search path [fedora-all]
qemu: CVE-2013-2231 qemu: qemu-ga win32 service unquoted search path [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue
Bugzilla
CVE-2013-2231 qemu: qemu-ga win32 service unquoted search path
bugzilla·2013-07-03·CVSS 7.2
CVE-2013-2231 [HIGH] CVE-2013-2231 qemu: qemu-ga win32 service unquoted search path
CVE-2013-2231 qemu: qemu-ga win32 service unquoted search path
An unquoted search path flaw was found in the way qemu guest agent service for Windows was installed into the system.
A local unprivileged user could use this flaw to increase their privileges.
References:
http://cwe.mitre.org/data/definitions/428.html
Acknowledgements:
This issue was discovered by Lev Veyde of Red Hat.
Discussion:
Statement:
This issue does not affect the kvm package as shipped with Red Hat Enterprise Linux 5.
This issue does not affect the xen package as shipped with Red Hat Enterprise Linux 5.
This issue does affect the qemu-kvm package as shipped with Red Hat Enterprise Linux 6. Future qemu-kvm updates in Red Hat Enterprise Linux 6 may address this flaw.
---
Created qemu tracking bugs for this
2013-10-01
Published