[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244411

 
 

909

 
 

193363

 
 

277

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2011-2527Date: (C)2012-06-21   (M)2023-12-22


The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 2.1
Exploit Score: 3.9
Impact Score: 2.9
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: NONE
Availability: NONE
  
Reference:
SECUNIA-45187
SECUNIA-45188
SECUNIA-45419
SECUNIA-47157
SECUNIA-47992
BID-48659
OSVDB-74752
DSA-2282
FEDORA-2012-8604
RHSA-2011:1531
USN-1177-1
http://www.openwall.com/lists/oss-security/2011/07/12/5
http://www.openwall.com/lists/oss-security/2011/07/12/15
https://bugs.launchpad.net/qemu/+bug/807893
openSUSE-SU-2012:0207
qemu-runas-priv-escalation(68539)

CPE    53
cpe:/a:qemu:qemu:0.12.5
cpe:/a:qemu:qemu:0.14.0:rc0
cpe:/a:qemu:qemu:0.9.1-5
cpe:/a:qemu:qemu:0.14.0:rc1
...
CWE    1
CWE-264
OVAL    5
oval:org.secpod.oval:def:700559
oval:org.secpod.oval:def:600597
oval:org.secpod.oval:def:500190
oval:org.secpod.oval:def:1504465
...

© SecPod Technologies