{"id":"UBUNTU-CVE-2025-34075","details":"Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.","modified":"2025-07-11T06:16:16.756956Z","published":"2025-07-02T20:15:00Z","withdrawn":"2025-07-15T04:36:57Z","upstream":["CVE-2025-34075"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-34075"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2025-34075"},{"type":"REPORT","url":"https://developer.hashicorp.com/vagrant"},{"type":"REPORT","url":"https://developer.hashicorp.com/vagrant/docs/synced-folders/basic_usage"},{"type":"REPORT","url":"https://developer.hashicorp.com/vagrant/docs/vagrantfile"},{"type":"REPORT","url":"https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/multi/local/vagrant_synced_folder_vagrantfile_breakout.rb"},{"type":"REPORT","url":"https://vulncheck.com/advisories/hashicorp-vagrant-synced-folder-vagrantfile-breakout"}],"affected":[{"package":{"name":"vagrant","ecosystem":"Ubuntu:Pro:16.04:LTS","purl":"pkg:deb/ubuntu/vagrant@1.8.1+dfsg-1ubuntu0.2?arch=source&distro=esm-apps/xenial"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["1.7.4+dfsg-1","1.8.1+dfsg-1","1.8.1+dfsg-1ubuntu0.1","1.8.1+dfsg-1ubuntu0.2"],"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-34075.json"}},{"package":{"name":"vagrant","ecosystem":"Ubuntu:Pro:18.04:LTS","purl":"pkg:deb/ubuntu/vagrant@2.0.2+dfsg-2ubuntu8?arch=source&distro=esm-apps/bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["1.9.1+dfsg-1","2.0.2+dfsg-2ubuntu2","2.0.2+dfsg-2ubuntu8"],"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-34075.json"}},{"package":{"name":"vagrant","ecosystem":"Ubuntu:Pro:20.04:LTS","purl":"pkg:deb/ubuntu/vagrant@2.2.6+dfsg-2ubuntu3?arch=source&distro=esm-apps/focal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2.2.3+dfsg-1ubuntu2","2.2.6+dfsg-2ubuntu1","2.2.6+dfsg-2ubuntu3"],"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-34075.json"}},{"package":{"name":"vagrant","ecosystem":"Ubuntu:22.04:LTS","purl":"pkg:deb/ubuntu/vagrant@2.2.19+dfsg-1ubuntu1?arch=source&distro=jammy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2.2.14+dfsg-1ubuntu1","2.2.19+dfsg-1ubuntu1"],"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-34075.json"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"},{"type":"Ubuntu","score":"medium"}]}