-
chevron_right
Zapscape Is The Latest Linux Vulnerability For KVM Guest-To-Host Escape, LPE
news.movim.eu / Phoronix • 0:29
-
rss_feed
add Followpeople 277 subscribers • Linux Hardware Reviews, Open-Source Benchmarks & Linux Performance
Made public earlier today is Zapscape as a guest-to-host escape vulnerability affecting the Linux KVM x86 code for the past six years. This 2020 kernel change to KVM x86 can also be used as a local privilege escalation (LPE) exploit too where /dev/kvm is world-writable on some Linux distributions like RHEL...