CVE-2021-3626 | Windows version of Multipass unauthenticated localhost tcp control socket can perform mounts
The Windows version of Multipass before 1.7.0 allowed any local process to connect to the localhost TCP control socket to perform mounts from the operating system to a guest, allowing for privilege escalation.
Conclusion & alert: CVE-2021-3626 is rated Moderate Risk (40.6/100): CVSS High severity, with low exploitation likelihood (EPSS 0.24%).Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
Exploit prediction scoring system (EPSS) score for CVE-2021-3626
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
CVE-2021-3626 medium priority: Ubuntu including 1 source packages (multipass), 8 status rows across 8 suites (bionic, focal, hirsute, impish, jammy, trusty, upstream, xenial): DNE 6, not-affected 1, released 1.