CVE-2017-7471Incorrect Permission Assignment in Qemu

Severity
9.0CRITICALNVD
EPSS
0.6%
top 31.51%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 9
Latest updateMay 13

Description

Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System (9pfs) support, is vulnerable to an improper access control issue. It could occur while accessing files on a shared host directory. A privileged user inside guest could use this flaw to access host file system beyond the shared folder and potentially escalating their privileges on a host.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:HExploitability: 2.3 | Impact: 6.0

Affected Packages3 packages

debiandebian/qemu< qemu 1:2.8+dfsg-5 (bookworm)
Debianqemu/qemu< 1:2.8+dfsg-5+3
NVDqemu/qemu2.8.1.1+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-cjfg-wq59-q7v2: Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System (9pfs) support, is vulnerable to an improper access control2022-05-13
OSV
CVE-2017-7471: Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System (9pfs) support, is vulnerable to an improper access control2018-07-09

📋Vendor Advisories

2
Red Hat
Qemu: 9p: virtfs allows guest to change filesystem attributes on host2017-04-18
Debian
CVE-2017-7471: qemu - Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 F...2017

💬Community

2
Bugzilla
CVE-2017-7471 Qemu: 9p: virtfs allows guest to change filesystem attributes on host2017-04-19
Bugzilla
CVE-2017-7471 Qemu: 9p: virtfs allows guest to change filesystem attributes on host [fedora-all]2017-04-19