博客
关于我
强烈建议你试试无所不能的chatGPT,快点击我
Host storage devices vulnerable with KVM Linux ...
阅读量:6195 次
发布时间:2019-06-21

本文共 1169 字,大约阅读时间需要 3 分钟。

hot3.png

According to a kernel update  by Red Hat, root users in a guest system that is virtualised with KVM (Kernel-based Virtual Machine) can, in certain circumstances, gain read and write access to the Linux host's storage devices. The advisory says that the hole exists when a host makes available partitions or  to the guest as "raw disks" via virtio. Privileged guest users can send SCSI requests to such volumes that the host will execute on the underlying storage device – which allows the guest system to access all areas of the device rather than just the permitted partitions or volumes.

The hole has been rated as "important" and is listed under CVE ID . Further background information is available in an  and in a  by a Red Hat developer. Meanwhile, the kernel developers are  the most suitable way to fix the problem; a patch that was suggested by another Red Hat developer hasn't met Linus Torvalds' approval. Torvalds also thinks that the patch is too dangerous to be integrated into the Linux main development branch at this point; the main development branch is expected to produce version 3.2 of the Linux kernel .

转载于:https://my.oschina.net/linuxhunter/blog/38261

你可能感兴趣的文章
Tomcat的server.xml配置
查看>>
win配置mysql 及一些简单的问题
查看>>
swap 脚本+selinux
查看>>
学习 easyui 之四:禁用 linkbutton 问题之后,颜色变灰,但是还能执行onclick事件
查看>>
MAC--PPT虚拟教程
查看>>
安装 Python3且与系统 Python2共存
查看>>
服务器网卡和HBA网卡
查看>>
如何使用PDF阅读器将PDF转换成图片
查看>>
20-3.自制小型LINUX系统,内核编译,busybox介绍
查看>>
iOS开发之网络编程--使用NSURLConnection实现大文件断点续传下载+使用输出流代替文件句柄...
查看>>
git删除/撤销远已经push到程服务器上某次代码提交
查看>>
seo长尾关键词操作
查看>>
Zabbix3.0监控Centos 7配置
查看>>
深度学习入门必须理解这25个概念
查看>>
安装rpm文件时提示rpmReadSignature failed 错误
查看>>
制作一款微信表情
查看>>
git 上线步骤
查看>>
PS cs4的卸载问题
查看>>
我的友情链接
查看>>
收邮件时,附件变成winmail.dat文件
查看>>