445
VMScore

CVE-2020-7211

Published: 21/01/2020 Updated: 23/01/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

tftp.c in libslirp 4.1.0, as used in QEMU 4.2.0, does not prevent ..\ directory traversal on Windows.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

libslirp project libslirp 4.1.0

qemu qemu 4.2.0

Mailing Lists

Hello, Upstream patch: --------------- -> gitlabfreedesktoporg/slirp/libslirp/commit/14ec36e107a8c9af7d0a80c3571fe39b291ff1d4 'CVE-2020-7211' assigned via -> cveformmitreorg/ Thank you -- Prasad J Pandit / Red Hat Product Security Team 8685 545E B54C 486B C6EB 271E E285 8B5A F050 DE8D ...