Follow

"Bhyve is a hypervisor for FreeBSD. This blogpost will describe how a limited OOB write vulnerability in an Adapter Emulator can be turned into code execution allowing to escape from the guest machine"

synacktiv.com/publications/esc

@lupyuen the vulnerability appears to be in the emulated e1000 card. This makes the impact of this issue much less critical since this driver is rarely used.

Sign in to participate in the conversation
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.