CVE Vulnerabilities

CVE-2008-1945

Published: Aug 08, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

QEMU 0.9.0 does not properly handle changes to removable media, which allows guest OS users to read arbitrary files on the host OS by using the diskformat: parameter in the -usbdevice option to modify the disk-image header to identify a different format, a related issue to CVE-2008-2004.

Affected Software

NameVendorStart VersionEnd Version
QemuQemu0.9.0 (including)0.9.0 (including)
Red Hat Enterprise Linux 5RedHatxen-0:3.0.3-64.el5_2.3*
KvmUbuntufeisty*
KvmUbuntugutsy*
KvmUbuntuhardy*
KvmUbuntuintrepid*
QemuUbuntudapper*
QemuUbuntufeisty*
QemuUbuntugutsy*
QemuUbuntuhardy*
QemuUbuntuintrepid*
QemuUbuntujaunty*
Xen-3.0Ubuntufeisty*
Xen-3.1Ubuntugutsy*
Xen-3.1Ubuntuhardy*
Xen-3.1Ubuntuintrepid*
Xen-3.2Ubuntuhardy*

References