The bdrv_open function in Qemu 1.0 does not properly handle the failure of the mkstemp function, when in snapshot node, which allows local users to overwrite or read arbitrary files via a symlink attack on an unspecified temporary file.
CVSS Details
- CVSS 3.1 Base Score: 5.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade qemu | Aug 30, 2017 | Aug 7, 2012 |
| Debian | — | Upgrade qemu | Jul 30, 2024 | Aug 7, 2012 |
| Gentoo Linux | — | Upgrade app-emulation/qemu-kvm. | Oct 30, 2017 | Aug 7, 2012 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | May 28, 2012 |
| Suse | — | Upgrade kvm | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade qemu-kvm | Nov 8, 2024 | Aug 7, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub