CVE-2023-5088

Advisory lineage Upstream: 0 Downstream: 8
Modified
Published: 03 Nov 2023, 13:58
Last modified:25 Feb 2026, 18:18

Vulnerability Summary

Overall Risk (default)
medium
28/100
CVSS Score
7 HIGH
v3.1 (nvd)
EPSS Score
0.01% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

03 Nov 2023, 13:58
Published
Vulnerability first disclosed
25 Feb 2026, 18:18
Last Modified
Vulnerability information updated

Description

A bug in QEMU could cause a guest I/O operation otherwise addressed to an arbitrary disk offset to be targeted to offset 0 instead (potentially overwriting the VM's boot code). This could be used, for example, by L2 guests with a virtual disk (vdiskL2) stored on a virtual disk of an L1 (vdiskL1) hypervisor to read and/or write data to LBA 0 of vdiskL1, potentially gaining control of L1 at its next reboot.

CVSS Metrics

  • v3.1MEDIUMScore: 6.4CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
  • v3.1HIGHScore: 7CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Trends

Current EPSS score: 0.01% Percentile: 3%

Techniques & Countermeasures

  • CWE-662Improper Synchronization

    The product utilizes multiple threads, processes, components, or systems to allow temporary access to a shared resource that can only be exclusive to one process at a time, but it does not properly synchronize these actions, which might cause simultaneous accesses of this resource by multiple threads or processes.

  • CWE-821Incorrect Synchronization

    The product utilizes a shared resource in a concurrent manner, but it does not correctly synchronize access to the resource.

Affected Systems

  • qemuqemu

    < 8.2.0

  • redhatenterprise_linux

    8.0 | 9.0

References (8)