Security Advisory

CVE-2021-3626

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-10-01 02:35:19
Last updated 2024-09-17 03:23:37
Assigner canonical
State PUBLISHED

Description

The Windows version of Multipass before 1.7.0 allowed any local process to connect to the localhost TCP control socket to perform mounts from the operating system to a guest, allowing for privilege escalation.