part of the file name in most cases. And even when they do control the
full path, many users would likely find such a path suspicious, which
would likely make it more difficult for an attacker to successfully
trick the user into opening such a path.
Discussion
-----------
Normally, we do not issue Qubes security bulletins for purely "in-VM"
vulnerabilities (like this one) that do not involve crossing the VM
security boundary. However, we have decided to make an exception in this
case, since this is a bug in our code and since qvm-open-in-vm is
specifically intended to operate on untrusted input.
While qvm-open-in-vm is designed to be hardened, keep in mind that
handling less trusted data in a more trusted VM still can be risky for
other reasons, for example:
- Unsafe handling of attacker-controlled paths is an easy mistake to
make in the shell.
- A file explorer could render the thumbnail of an untrusted file with
a buggy parser.
- You might accidentally open the file with an application other than
qvm-open-in-vm, exposing the full attack surface of that application.
Patching
---------
The following package contains the security update that addresses the
vulnerability described in this bulletin:
For Qubes 4.3, in affected templates and standalones:
- qubes-core-agent version 4.3.48
This package will migrate from the security-testing repository to the
current (stable) repository over the next two weeks after being tested
by the community. [2] Once available, the package should be installed
via the Qubes Update tool or its command-line equivalents. [1]
In order for this security update to take effect, all affected templates
must be updated with the package above, then shut down. Afterward, all
qubes based on these templates (including disposables) must be
restarted. All affected standalones must be updated with the package
above.
Credits
--------
This vulnerability was first reported by Giulio Berra. Shortly after, it
was independently reported by Rafal Wojtczuk.
References
-----------
[1] https://doc.qubes-os.org/en/latest/user/how-to-guides/how-to-update.html
[2] https://doc.qubes-os.org/en/latest/user/downloading-installing-upgrading/testing.html
--
The Qubes Security Team
https://www.qubes-os.org/security/
Source: qsb-119-2026.txt (https://github.com/QubesOS/qubes-secpack/blob/2504a9d8fe7979eadaa933359da0981a3c14a7de/QSBs/qsb-119-2026.txt)
Marek Marczykowski-Górecki (https://www.qubes-os.org/team/#marek-marczykowski-g%C3%B3recki)’s PGP signature
-----BEGIN PGP SIGNATURE-----
iQIzBAABCAAdFiEELRdx/k12ftx2sIn61lWk8hgw4GoFAmqpVWsACgkQ1lWk8hgw
4GqZXQ//bjrYeDHG0AF5Zute1i8YgJD1TbvLAmI3wXDe5xJKL+gNhHyguqh3qtP3
cI5xGdY/GT940IP6QO2qHDnVxfU6QMuxEfMy6VSW0GeQ/lFbLco5Edt9UpELJCG2
h1IzyTNgtSm3C6pvrefQs6DL/A39Zl2QST0xTs/ECsJXSE7pc5BL7kO4HnSvSseQ
BMFDmsLFx/JcU4s8tBGPSGH7/8Oq7YYn/Ue2LaNk3z1s2l/V1H9Jpk8dpp/yA1Uh
oGkRcqio93YkqBArmJd9G1xCn33dJQHd1vffMNoDTNbuZJbrtm4ZhZSVLJ3W3CA0
ZTMaO34M83aImSaTPA+a7VLhBdBDXkfn/8ZHrT51m2flQL1uCE3C8l5H+bQYMeaE
EJE3I1b7v3NZoxJ6gXk/+YSWM+E7XbuSrc6f3CYpUue0B6vhHO29xXc71EiFWz1b
1zW4QSBIUd4yEl4B+tH5ZMB3pacSbTQsW1SCTU3I428meTFJW6yjN4cPNruHF2lH
Jz3JQIoKdXohJxruPaCh/ZAEWon+cz7ho98cvwH/x2zi0DoT3cyT6EtTVlD4Dg5c
/XiEC0ku+IARXCoYiQbMto5PiYzcoVbwv4H0iwuzOLOPwbPKhdfwJQinlMjd2ZDb
OdFehXOnmM34nwBcUANGV5ygFIttVR9bRBlz/2Wrvu88+nr7TGM=
=yTNV
-----END PGP SIGNATURE-----
Source: qsb-119-2026.txt.sig.marmarek (https://github.com/QubesOS/qubes-secpack/blob/2504a9d8fe7979eadaa933359da0981a3c14a7de/QSBs/qsb-119-2026.txt.sig.marmarek)
Simon Gaiser (aka HW42) (https://www.qubes-os.org/team/#simon-gaiser-aka-hw42)’s PGP signature
-----BEGIN PGP SIGNATURE-----
iQIzBAABCgAdFiEE6hjn8EDEHdrv6aoPSsGN4REuFJAFAmqpXmAACgkQSsGN4REu
FJDGoQ//QmxpMyyFvnG9srj/zYaYuFcyWd7o2lqd4ugEAQVyNJOjAl0GlXnvKVWw
frH+QlZXT/BlQuV6ltzmmh2W5C43JtbBF+O6+Wnc7Imc6bDFf3rjo8xWdx6sptKA
wUVcFX/pO66TTMGjGsSLZNgB6HqZnokdANYpB7MkxxeV6cBPAjFwUoLvDSrba8KG
k8KBdBGw+FJ3Zt4583fW3DwKVJlbtp7SEpQG8HMswU+SHQBKclR+ceye/uwMzoej
Post #1214
107