Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g73j-h828-gg82

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

bhyve, as used in FreeBSD through 12.1 and illumos (e.g., OmniOS CE through r151034 and OpenIndiana through Hipster 2020.04), does not properly restrict VMCS and VMCB read/write operations, as demonstrated by a root user in a container on an Intel system, who can gain privileges by modifying VMCS_HOST_RIP.

bhyve, as used in FreeBSD through 12.1 and illumos (e.g., OmniOS CE through r151034 and OpenIndiana through Hipster 2020.04), does not properly restrict VMCS and VMCB read/write operations, as demonstrated by a root user in a container on an Intel system, who can gain privileges by modifying VMCS_HOST_RIP.

EPSS

Процентиль: 28%
0.00101
Низкий

Дефекты

CWE-862
CWE-863

Связанные уязвимости

CVSS3: 8.2
nvd
больше 5 лет назад

bhyve, as used in FreeBSD through 12.1 and illumos (e.g., OmniOS CE through r151034 and OpenIndiana through Hipster 2020.04), does not properly restrict VMCS and VMCB read/write operations, as demonstrated by a root user in a container on an Intel system, who can gain privileges by modifying VMCS_HOST_RIP.

EPSS

Процентиль: 28%
0.00101
Низкий

Дефекты

CWE-862
CWE-863