A flaw was found in the virtio-fs shared file system daemon (virtiofsd) of QEMU. The new 'xattrmap' option may cause the 'security.capability' xattr in the guest to not drop on file write, potentially leading to a modified, privileged executable in the guest. In rare circumstances, this flaw could be used by a malicious user to elevate their privileges within the guest.
CVSS Details
- CVSS 3.1 Base Score: 3.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade qemu | Jul 30, 2024 | Mar 9, 2021 |
| Gentoo Linux | — | Upgrade app-emulation/qemu. | Aug 16, 2022 | Mar 9, 2021 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Mar 9, 2021 |
| Suse | — | Upgrade qemu-ui-spice-coreUpgrade qemu-extraUpgrade qemu-kvmUpgrade qemu-guest-agentUpgrade qemu-accel-tcg-x86Upgrade qemu-hw-usb-hostUpgrade qemu-ksmUpgrade qemu-x86Upgrade qemu-hw-usb-redirectUpgrade qemu-microvmUpgrade qemu-ppcUpgrade qemu-ui-cursesUpgrade qemu-seabiosUpgrade qemu-vgabiosUpgrade qemu-block-iscsiUpgrade qemu-audio-paUpgrade qemu-audio-alsaUpgrade qemu-hw-s390x-virtio-gpu-ccwUpgrade qemu-chardev-baumUpgrade qemu-block-curlUpgrade qemu-ui-gtkUpgrade qemu-hw-usb-smartcardUpgrade qemu-langUpgrade qemu-ivshmem-toolsUpgrade qemu-audio-spiceUpgrade qemu-vhost-user-gpuUpgrade qemu-block-glusterUpgrade qemu-SLOFUpgrade qemu-ui-spice-appUpgrade qemu-block-nfsUpgrade qemu-ipxeUpgrade qemu-skibootUpgrade qemu-block-sshUpgrade qemu-hw-display-virtio-vgaUpgrade qemuUpgrade qemu-toolsUpgrade qemu-hw-display-qxlUpgrade qemu-sgabiosUpgrade qemu-block-rbdUpgrade qemu-hw-display-virtio-gpuUpgrade qemu-ui-openglUpgrade qemu-hw-display-virtio-gpu-pciUpgrade qemu-chardev-spiceUpgrade qemu-armUpgrade qemu-block-dmgUpgrade qemu-s390x | Jun 11, 2021 | Mar 9, 2021 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub