LWN.net Logo

qemu-kvm: unauthorized file access

Package(s):qemu-kvm CVE #(s):CVE-2013-2007
Created:June 4, 2013 Updated:July 15, 2013
Description: From the CVE entry:

The qemu guest agent in Qemu 1.4.1 and earlier, as used by Xen, when started in daemon mode, uses weak permissions for certain files, which allows local users to read and write to these files.

Alerts:
Red Hat RHSA-2013:0896-01 2013-06-03
Scientific Linux SL-qemu-20130603 2013-06-03
CentOS CESA-2013:0896 2013-06-03
Oracle ELSA-2013-0896 2013-06-03
Mageia MGASA-2013-0169 2013-06-18
Fedora FEDORA-2013-11407 2013-07-01
openSUSE openSUSE-SU-2013:1202-1 2013-07-15
openSUSE openSUSE-SU-2013:1404-1 2013-09-04

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds