VDB
CVE-2023-29017
CVE-2023-29017
PUBLISHED
In vm2 existieren mehrere Schwachstellen. Diese bestehen bei der Behandlung bestimmter übergebener Objekte und der Behandlung von Ausnahmebedingungen. Ein Angreifer kann diese Schwachstellen ausnutzen, um aus der Sandbox auszubrechen und beliebigen Code im Host-Kontext auszuführen.
EPSS 74.96% · 98.9th percentile
Risk Scores
EPSS Score
74.96%
98.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | Red Hat Enterprise Linux |
Exploit Intelligence
- passwa11/CVE-2023-29017-reverse-shell (github-poc)
- passwa11/CVE-2023-29017-reverse-shell (github-poc)
- passwa11/CVE-2023-29017-reverse-shell (github-poc)
- passwa11/CVE-2023-29017-reverse-shell (github-poc)
- passwa11/CVE-2023-29017-reverse-shell (github-poc)
- passwa11/CVE-2023-29017-reverse-shell (github-poc)
- passwa11/CVE-2023-29017-reverse-shell (github-poc)
- passwa11/CVE-2023-29017-reverse-shell (github-poc)
- Clone from gist (github-poc)
- Clone from gist (github-poc)
…and 14 more exploits
Timeline
- Apr 6, 2023 CVE Published
- Apr 7, 2023 EPSS Score
- Apr 13, 2023 CVE Updated
- Apr 14, 2023 EPSS Score
- May 8, 2023 EPSS Score
- Jun 8, 2023 EPSS Score
- Nov 25, 2024 EPSS Score
- Dec 17, 2024 EPSS Score
- Mar 17, 2025 EPSS Score
- Mar 19, 2025 EPSS Score
- Mar 20, 2025 EPSS Score
- Mar 27, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-1004.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-1004 advisory
- https://access.redhat.com/errata/RHSA-2023:1897 advisory
- https://access.redhat.com/errata/RHSA-2023:1896 advisory
- https://access.redhat.com/errata/RHSA-2023:1894 advisory
- https://access.redhat.com/errata/RHSA-2023:1887 advisory
- https://access.redhat.com/errata/RHSA-2023:1888 advisory
- https://access.redhat.com/errata/RHSA-2023:1893 advisory
- https://github.com/patriksimek/vm2/security/advisories/GHSA-7jxr-cg7f-gpgv advisory
- https://github.com/patriksimek/vm2/security/advisories/GHSA-ch3r-j5x3-6q2m advisory
- https://github.com/patriksimek/vm2/security/advisories/GHSA-mrgp-mrhc-5jrq advisory
- https://github.com/patriksimek/vm2/security/advisories/GHSA-xj72-wvfv-8985 advisory