Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2016-6258] Xen exploitation part 3: XSA-182, Qubes escape

blog.quarkslab.com | vulnerability | CVE-2016-6258 | #exploitation | #cve | #hypervisor | #vm-escape | #xen | #qubes-os

Summary

Final part of the Xen exploitation series: discovering XSA-182 (CVE-2016-6258), a guest-to-host flaw in paravirtualized memory management, exploited on Qubes OS to seize dom0 from an untrusted VM.
Published
Collected

original ↗

Related coverage

back