VDB

DEBIAN-CVE-2008-1945

DEBIAN-CVE-2008-1945 PUBLISHED CVSS 8.800000190734863 HIGH

QEMU 0.9.0 does not properly handle changes to removable media, which allows guest OS users to read arbitrary files on the host OS by using the diskformat: parameter in the -usbdevice option to modify the disk-image header to identify a different format, a related issue to CVE-2008-2004.

Risk Scores

CVSS v4.0
8.800000190734863
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:H/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
Debian:12qemu0, 0, 0
Debian:14qemu0, 0, 0
Debian:13qemu0, 0, 0
Debian:11qemu0, 0, 0

Timeline

  • Aug 8, 2008 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›