cbcvebase.
CVE-2023-2861
published 2023-12-06

CVE-2023-2861: A flaw was found in the 9p passthrough filesystem (9pfs) implementation in QEMU. The 9pfs server did not prohibit opening special files on the host side…

PriorityP434high7.1CVSS 3.1
AVLACLPRLUINSUCHIHAN
EPSS
0.38%
30.2th percentile
A flaw was found in the 9p passthrough filesystem (9pfs) implementation in QEMU. The 9pfs server did not prohibit opening special files on the host side, potentially allowing a malicious client to escape from the exported 9p tree by creating and opening a device file in the shared folder.

Affected

15 ranges
VendorProductVersion rangeFixed in
debianqemu< qemu 1:7.2+dfsg-7+deb12u1 (bookworm)qemu 1:7.2+dfsg-7+deb12u1 (bookworm)
msrcazl3_qemu_6.2.0-18_on_azure_linux_3.0
msrcazl3_qemu_8.2.0-1_on_azure_linux_3.0
msrcazure_linux_3.0_arm
msrcazure_linux_3.0_x64
msrccbl2_qemu_6.2.0-22_on_cbl_mariner_2.0
qemuqemu< 8.1.08.1.0
qemuqemu>= 0 < 1:7.2+dfsg-7+deb12u11:7.2+dfsg-7+deb12u1
qemuqemu>= 0 < 1:8.0.3+dfsg-11:8.0.3+dfsg-1
qemuqemu>= 0 < 1:8.0.3+dfsg-11:8.0.3+dfsg-1
qemuqemu>= 0 < 1:4.2-3ubuntu6.281:4.2-3ubuntu6.28
qemuqemu>= 0 < 1:4.2-3ubuntu6.291:4.2-3ubuntu6.29
qemuqemu>= 0 < 1:6.2+dfsg-2ubuntu6.161:6.2+dfsg-2ubuntu6.16
qemuqemu>= 0 < 1:6.2+dfsg-2ubuntu6.211:6.2+dfsg-2ubuntu6.21
ubuntuqemu

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
osv7.1HIGH
vendor_ubuntu8.8HIGH
vendor_msrc7.1HIGH
vendor_debian6.0MEDIUM
vendor_redhat6.0MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.