Rechercher
Contactez-nous Suivez-nous sur Twitter En francais English Language
 

Freely subscribe to our NEWSLETTER

Newsletter FR

Newsletter EN

Vulnérabilités

Unsubscribe

Vigil@nce - Xen: memory leak via Nested Virtualization

January 2013 by Vigil@nce

This bulletin was written by Vigil@nce : http://vigilance.fr/offer

SYNTHESIS OF THE VULNERABILITY

An attacker, who is an administrator in a guest system, can use
the Nested Virtualization feature, in order to stop the Xen host
system.

Impacted products: Unix (platform)

Severity: 1/4

Creation date: 22/01/2013

DESCRIPTION OF THE VULNERABILITY

The Nested Virtualization feature is used to start a virtual
machine inside another virtual machine.

However, when a guest system enables the Nested Virtualization, a
memory area is allocated, but it is never freed.

An attacker, who is an administrator in a guest system, can
therefore use the Nested Virtualization feature, in order to stop
the Xen host system.

ACCESS TO THE COMPLETE VIGIL@NCE BULLETIN

http://vigilance.fr/vulnerability/Xen-memory-leak-via-Nested-Virtualization-12348


See previous articles

    

See next articles


Your podcast Here

New, you can have your Podcast here. Contact us for more information ask:
Marc Brami
Phone: +33 1 40 92 05 55
Mail: ipsimp@free.fr

All new podcasts