vulnerability

Rocky Linux: CVE-2020-35517: virt-rhel-and-virt-devel-rhel (RLSA-2021-0711)

Severity
5
CVSS
(AV:L/AC:L/Au:N/C:P/I:P/A:P)
Published
Jan 28, 2021
Added
Mar 12, 2024
Modified
Aug 13, 2025

Description

A flaw was found in qemu. A host privilege escalation issue was found in the virtio-fs shared file system daemon where a privileged guest user is able to create a device special file in the shared directory and use it to r/w access host devices.

Solutions

rocky-upgrade-hivexrocky-upgrade-hivex-debuginforocky-upgrade-hivex-debugsourcerocky-upgrade-hivex-develrocky-upgrade-libguestfs-winsupportrocky-upgrade-libiscsirocky-upgrade-libiscsi-debuginforocky-upgrade-libiscsi-debugsourcerocky-upgrade-libiscsi-develrocky-upgrade-libiscsi-utilsrocky-upgrade-libiscsi-utils-debuginforocky-upgrade-libnbdrocky-upgrade-libnbd-debuginforocky-upgrade-libnbd-debugsourcerocky-upgrade-libnbd-develrocky-upgrade-libvirt-dbusrocky-upgrade-libvirt-dbus-debuginforocky-upgrade-libvirt-dbus-debugsourcerocky-upgrade-libvirt-python-debugsourcerocky-upgrade-nbdfuserocky-upgrade-nbdfuse-debuginforocky-upgrade-nbdkitrocky-upgrade-nbdkit-basic-filtersrocky-upgrade-nbdkit-basic-filters-debuginforocky-upgrade-nbdkit-basic-pluginsrocky-upgrade-nbdkit-basic-plugins-debuginforocky-upgrade-nbdkit-curl-pluginrocky-upgrade-nbdkit-curl-plugin-debuginforocky-upgrade-nbdkit-debuginforocky-upgrade-nbdkit-debugsourcerocky-upgrade-nbdkit-develrocky-upgrade-nbdkit-example-pluginsrocky-upgrade-nbdkit-example-plugins-debuginforocky-upgrade-nbdkit-gzip-pluginrocky-upgrade-nbdkit-gzip-plugin-debuginforocky-upgrade-nbdkit-linuxdisk-pluginrocky-upgrade-nbdkit-linuxdisk-plugin-debuginforocky-upgrade-nbdkit-python-pluginrocky-upgrade-nbdkit-python-plugin-debuginforocky-upgrade-nbdkit-serverrocky-upgrade-nbdkit-server-debuginforocky-upgrade-nbdkit-ssh-pluginrocky-upgrade-nbdkit-ssh-plugin-debuginforocky-upgrade-nbdkit-vddk-pluginrocky-upgrade-nbdkit-vddk-plugin-debuginforocky-upgrade-nbdkit-xz-filterrocky-upgrade-nbdkit-xz-filter-debuginforocky-upgrade-netcfrocky-upgrade-netcf-debuginforocky-upgrade-netcf-debugsourcerocky-upgrade-netcf-develrocky-upgrade-netcf-libsrocky-upgrade-netcf-libs-debuginforocky-upgrade-ocaml-hivexrocky-upgrade-ocaml-hivex-debuginforocky-upgrade-ocaml-hivex-develrocky-upgrade-ocaml-libnbdrocky-upgrade-ocaml-libnbd-debuginforocky-upgrade-ocaml-libnbd-develrocky-upgrade-perl-hivexrocky-upgrade-perl-hivex-debuginforocky-upgrade-perl-sys-virtrocky-upgrade-perl-sys-virt-debuginforocky-upgrade-perl-sys-virt-debugsourcerocky-upgrade-python3-hivexrocky-upgrade-python3-hivex-debuginforocky-upgrade-python3-libnbdrocky-upgrade-python3-libnbd-debuginforocky-upgrade-python3-libvirtrocky-upgrade-python3-libvirt-debuginforocky-upgrade-ruby-hivexrocky-upgrade-ruby-hivex-debuginforocky-upgrade-seabiosrocky-upgrade-sgabiosrocky-upgrade-superminrocky-upgrade-supermin-debuginforocky-upgrade-supermin-debugsourcerocky-upgrade-supermin-devel
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.