CVE-2008-1945
EPSS 0.47%
描述
QEMU 0.9.0 does not properly handle changes to removable media, which allows guest OS users to read arbitrary files on the host OS by using the diskformat: parameter in the -usbdevice option to modify the disk-image header to identify a different format, a related issue to CVE-2008-2004.
如何修補 CVE-2008-1945
要修補 CVE-2008-1945,請將受影響套件升級到下列已修補版本。
- Debian/qemu—升級至 0.9.1-5 或更新版本
CVE-2008-1945 正在被利用嗎?
低 — EPSS 為 0.5%,目前沒有觀察到大規模利用活動。
受影響套件(1)
- from 0, < 0.9.1-5