High severity7.8NVD Advisory· Published May 17, 2017· Updated May 13, 2026
CVE-2017-7493
CVE-2017-7493
Description
Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System(9pfs) support, is vulnerable to an improper access control issue. It could occur while accessing virtfs metadata files in mapped-file security mode. A guest user could use this flaw to escalate their privileges inside guest.
Affected products
3- cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- seclists.org/oss-sec/2017/q2/278nvdMailing ListPatchThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
- lists.gnu.org/archive/html/qemu-devel/2017-05/msg03663.htmlnvdMailing ListPatchThird Party Advisory
- www.securityfocus.com/bid/98574nvdThird Party AdvisoryVDB Entry
- lists.debian.org/debian-lts-announce/2018/09/msg00007.htmlnvdMailing ListThird Party Advisory
- security.gentoo.org/glsa/201706-03nvdThird Party Advisory
News mentions
0No linked articles in our index yet.