|
|
Log in / Subscribe / Register

qemu: directory/path traversal

Package(s):qemu CVE #(s):CVE-2016-7116
Created:September 12, 2016 Updated:September 14, 2016
Description: From the Debian LTS advisory:

Quick Emulator(Qemu) built with the VirtFS, host directory sharing via Plan 9 File System(9pfs) support, is vulnerable to a directory/path traversal issue. It could occur while creating or accessing files on a shared host directory.

A privileged user inside guest could use this flaw to access undue files on the host.

Alerts:
Ubuntu USN-3125-1 qemu, qemu-kvm 2016-11-09
openSUSE openSUSE-SU-2016:2642-1 qemu 2016-10-26
SUSE SUSE-SU-2016:2589-1 qemu 2016-10-21
Fedora FEDORA-2016-689f240960 xen 2016-10-14
Fedora FEDORA-2016-4c407cd849 xen 2016-10-13
Gentoo 201609-01 qemu 2016-09-25
Debian-LTS DLA-619-1 qemu-kvm 2016-09-11
Debian-LTS DLA-618-1 qemu 2016-09-11

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds