CVE-2023-0664Execution with Unnecessary Privileges in Qemu

Severity
7.8HIGHNVD
EPSS
0.0%
top 93.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 29

Description

A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their privileges on the system.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

NVDqemu/qemu< 8.0.0
CVEListV5qemu/qemuunknown

Also affects: Fedora 37, Enterprise Linux 7.0, 8.0, 9.0

Patches

🔴Vulnerability Details

2
GHSA
GHSA-mvgg-p48p-h9jc: A flaw was found in the QEMU Guest Agent service for Windows2023-03-29
CVEList
CVE-2023-0664: A flaw was found in the QEMU Guest Agent service for Windows2023-03-29

📋Vendor Advisories

3
Microsoft
A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their pr2023-03-14
Red Hat
QEMU: local privilege escalation via the QEMU Guest Agent on Windows2023-02-20
Debian
CVE-2023-0664: qemu - A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileg...2023
CVE-2023-0664 — Execution with Unnecessary Privileges | cvebase