CVE-2017-7493Incorrect Permission Assignment in Qemu

Severity
7.8HIGHNVD
EPSS
0.1%
top 81.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 17
Latest updateMay 13

Description

Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System(9pfs) support, is vulnerable to an improper access control issue. It could occur while accessing virtfs metadata files in mapped-file security mode. A guest user could use this flaw to escalate their privileges inside guest.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages5 packages

debiandebian/qemu< qemu 1:2.8+dfsg-6 (bookworm)
Debianqemu/qemu< 1:2.8+dfsg-6+3
Ubuntuqemu/qemu< 2.0.0+dfsg-2ubuntu1.36+3
NVDqemu/qemu2.9.1
CVEListV5qemu/qemu2.7.4

Also affects: Debian Linux 8.0

Patches

🔴Vulnerability Details

4
GHSA
GHSA-w8mx-2pfw-8h8q: Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System(9pfs) support, is vulnerable to an improper access control2022-05-13
OSV
qemu regression2017-09-20
OSV
qemu vulnerabilities2017-09-13
OSV
CVE-2017-7493: Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System(9pfs) support, is vulnerable to an improper access control2017-05-17

📋Vendor Advisories

4
Ubuntu
QEMU regression2017-09-20
Ubuntu
QEMU vulnerabilities2017-09-13
Red Hat
Qemu: 9pfs: guest privilege escalation in virtfs mapped-file mode2017-05-16
Debian
CVE-2017-7493: qemu - Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 F...2017

💬Community

2
Bugzilla
CVE-2017-7493 Qemu: 9pfs: guest privilege escalation in virtfs mapped-file mode [fedora-all]2017-05-17
Bugzilla
CVE-2017-7493 Qemu: 9pfs: guest privilege escalation in virtfs mapped-file mode2017-05-17