First published: Mon May 12 2008(Updated: )
The drive_init function in QEMU 0.9.1 determines the format of a raw disk image based on the header, which allows local guest users to read arbitrary files on the host by modifying the header to identify a different format, which is used when the guest is restarted.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
QEMU qemu | =0.9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.