VDB
CVE-2023-30547
CVE-2023-30547
PUBLISHED
In vm2 existieren mehrere Schwachstellen. Diese bestehen bei der Behandlung bestimmter übergebener Objekte und der Behandlung von Ausnahmebedingungen. Ein Angreifer kann diese Schwachstellen ausnutzen, um aus der Sandbox auszubrechen und beliebigen Code im Host-Kontext auszuführen.
EPSS 83.68% · 99.3th percentile
Risk Scores
EPSS Score
83.68%
99.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | Red Hat Enterprise Linux |
Exploit Intelligence
- PoC Exploit for VM2 Sandbox Escape Vulnerability (github-poc)
- PoC Exploit for VM2 Sandbox Escape Vulnerability (github-poc)
- PoC Exploit for VM2 Sandbox Escape Vulnerability (github-poc)
- PoC Exploit for VM2 Sandbox Escape Vulnerability (github-poc)
- PoC Exploit for VM2 Sandbox Escape Vulnerability (github-poc)
- PoC Exploit for VM2 Sandbox Escape Vulnerability (github-poc)
- PoC Exploit for VM2 Sandbox Escape Vulnerability (github-poc)
- junnythemarksman/CVE-2023-30547 (github-poc-repo)
- junnythemarksman/CVE-2023-30547 (github-poc-repo)
- junnythemarksman/CVE-2023-30547 (github-poc-repo)
…and 43 more exploits
Timeline
- Apr 17, 2023 CVE Published
- Apr 18, 2023 EPSS Score
- Apr 28, 2023 CVE Updated
- Jul 2, 2023 EPSS Score
- Sep 15, 2023 EPSS Score
- Oct 23, 2023 EPSS Score
- Jan 6, 2024 EPSS Score
- Mar 21, 2024 EPSS Score
- Jun 4, 2024 EPSS Score
- Aug 18, 2024 EPSS Score
- Sep 24, 2024 EPSS Score
- Dec 9, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-1004.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-1004 advisory
- https://access.redhat.com/errata/RHSA-2023:1897 advisory
- https://access.redhat.com/errata/RHSA-2023:1896 advisory
- https://access.redhat.com/errata/RHSA-2023:1894 advisory
- https://access.redhat.com/errata/RHSA-2023:1887 advisory
- https://access.redhat.com/errata/RHSA-2023:1888 advisory
- https://access.redhat.com/errata/RHSA-2023:1893 advisory
- https://github.com/patriksimek/vm2/security/advisories/GHSA-7jxr-cg7f-gpgv advisory
- https://github.com/patriksimek/vm2/security/advisories/GHSA-ch3r-j5x3-6q2m advisory
- https://github.com/patriksimek/vm2/security/advisories/GHSA-mrgp-mrhc-5jrq advisory
- https://github.com/patriksimek/vm2/security/advisories/GHSA-xj72-wvfv-8985 advisory