ZeroHour

CVE-2023-0664

CVSS 3.1
7.8 high
EPSS
<1%p23
Published
()
Modified
Description

A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their privileges on the system.

Vendors
qemuredhatfedoraproject
Products
qemu, enterprise linux, fedora
Weakness
CWE-250, CWE-269
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.