CVE-2023-2861Improper Access Control in Qemu

Severity
7.1HIGHNVD
CNA6.0OSV3.2
EPSS
0.0%
top 87.65%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 6
Latest updateApr 13

Description

A flaw was found in the 9p passthrough filesystem (9pfs) implementation in QEMU. The 9pfs server did not prohibit opening special files on the host side, potentially allowing a malicious client to escape from the exported 9p tree by creating and opening a device file in the shared folder.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:NExploitability: 1.8 | Impact: 5.2

Affected Packages3 packages

NVDqemu/qemu< 8.1.0
Debianqemu/qemu< 1:7.2+dfsg-7+deb12u1+2
Ubuntuqemu/qemu< 1:4.2-3ubuntu6.28+3

Patches

🔴Vulnerability Details

5
OSV
qemu regression2024-06-06
OSV
qemu vulnerabilities2024-01-08
OSV
CVE-2023-2861: A flaw was found in the 9p passthrough filesystem (9pfs) implementation in QEMU2023-12-06
CVEList
Qemu: 9pfs: improper access control on special files2023-12-06
GHSA
GHSA-6mxq-x623-25h9: A flaw was found in the 9p passthrough filesystem (9pfs) implementation in QEMU2023-12-06

📋Vendor Advisories

7
Ubuntu
kvmtool vulnerabilities2026-04-13
Ubuntu
QEMU regression2024-06-06
CISA ICS
Siemens SCALANCE XCM-/XRM-3002024-02-15
Ubuntu
QEMU vulnerabilities2024-01-08
Microsoft
Qemu: 9pfs: improper access control on special files2023-12-12