Qemu 0.9.1 and earlier does not perform range checks for block device read or write requests, which allows guest host users with root privileges to access arbitrary memory and escape the virtual machine.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2008-03-03T22:00:00
Updated: 2017-09-28T12:57:01
Reserved: 2008-02-25T00:00:00
Link: CVE-2008-0928
JSON object: View
NVD Information
Status : Modified
Published: 2008-03-03T22:44:00.000
Modified: 2020-11-02T14:39:17.710
Link: CVE-2008-0928
JSON object: View
Redhat Information
No data.
CWE