4.3

CVE-2007-0998

The VNC server implementation in QEMU, as used by Xen and possibly other environments, allows local users of a guest operating system to read arbitrary files on the host operating system via unspecified vectors related to QEMU monitor mode, as demonstrated by mapping files to a CDROM device.  NOTE: some of these details are obtained from third party information.

Data is provided by the National Vulnerability Database (NVD)
XenQemu
   RedhatEnterprise Linux Version5.0 Editiondesktop
   RedhatEnterprise Linux Version5.0 Editiondesktop_multiple_os
   RedhatEnterprise Linux Version5.0 Editionserver
   RedhatEnterprise Linux Version5.0 Editionvirtualization
   RedhatFedora Core Versioncore_5.0
   RedhatFedora Core Versioncore6
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.13% 0.827
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:P/I:N/A:N