Lucene search

K
osvGoogleOSV:CVE-2021-3626
HistoryOct 01, 2021 - 3:15 a.m.

CVE-2021-3626

2021-10-0103:15:06
Google
osv.dev
10
multipass
windows
privilege escalation
localhost
tcp control socket
software

AI Score

6.7

Confidence

High

EPSS

0

Percentile

12.6%

The Windows version of Multipass before 1.7.0 allowed any local process to connect to the localhost TCP control socket to perform mounts from the operating system to a guest, allowing for privilege escalation.

AI Score

6.7

Confidence

High

EPSS

0

Percentile

12.6%

Related for OSV:CVE-2021-3626