Wind River Support Network

HomeDefectsLIN7-9763
Acknowledged

LIN7-9763 : Security Advisory - qemu - CVE-2016-9602

Created: May 2, 2018    Updated: Jun 14, 2018
Found In Version: 7.0.0.28
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Userspace

Description

Qemu before version 2.9 is vulnerable to an improper link following when built with the VirtFS. A privileged user inside guest could use this flaw to access host file system beyond the shared folder and potentially escalating their privileges on a host.

https://nvd.nist.gov/vuln/detail/CVE-2016-9602

CVEs


Live chat
Online