Dismiss this notice
novaPDF Professional Valentines 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=5523

Dismiss this notice
Ashampoo PDF PRO Valentines 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=5524

Dismiss this notice
Undelete 11 Professional Valentines 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=5522

Dismiss this notice
ExpressVPN Valentines 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=5521

Dismiss this notice
Macrium Reflect Home Valentines 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=5520


Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
VirtualBox zero-day published by disgruntled researcher
#1
Quote:A Russian security researcher has published details about a zero-day vulnerability affecting VirtualBox, an Oracle software application for running virtual machines.

According to a text file uploaded on GitHub, Saint Petersburg-based researcher Sergey Zelenyuk has found a chain of bugs that can allow malicious code to escape the VirtualBox virtual machine (the guest OS) and execute on the underlying (host) operating system.

Once out of the VirtualBox VM, the malicious code runs in the OS' limited userspace (kernel ring 3), but Zelenyuk said that attackers can use many of the already known privilege escalation bugs to gain kernel-level access (ring 0).

"The exploit is 100% reliable," Zelenyuk said. "It means it either works always or never because of mismatched binaries or other, more subtle reasons I didn't account."

The Russian researcher says the zero-day affects all current VirtualBox releases, works regardless of the host or guest operating system the user is running, and is reliable against the default configuration of newly created VMs.

Source: https://www.zdnet.com/article/virtualbox...esearcher/
[-] The following 2 users Like silversurfer's post:
  • harlan4096, mekelek
Reply
#2
after the whole vulnerable driver fiasco someone would have to be really brave not to switch over to VMWare tbh.
[-] The following 2 users Like mekelek's post:
  • harlan4096, silversurfer
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Latest Threads
ProtonVPN specialoffer SAVE UP TO 40%
Last Post: tofana
Yesterday 22:47
» Replies: 0
» Views: 16
NordVPN save 75%!
Last Post: tofana
Yesterday 21:43
» Replies: 0
» Views: 17
3-year CyberGhost subscription for only ...
Last Post: tofana
Yesterday 21:34
» Replies: 0
» Views: 19
Zemana AntiMalware 3.0 Beta Updates
Last Post: JM Safe
Yesterday 21:26
» Replies: 17
» Views: 534
ACDSee Photo and Video Editing Software ...
Last Post: tofana
Yesterday 21:26
» Replies: 0
» Views: 23
GFYI [Official] ExpressVPN Valentines 20...
Last Post: pisondi
Yesterday 21:19
» Replies: 17
» Views: 1923
Sophos Home (Antivirus)
Last Post: silversurfer
Yesterday 20:49
» Replies: 2
» Views: 110
80% of the Top Exploited Vulnerabilities...
Last Post: silversurfer
Yesterday 20:05
» Replies: 0
» Views: 21
What is your favourite AntiVirus?
Last Post: jasonX
Yesterday 18:56
» Replies: 24
» Views: 547
What firewall do you use and trust?
Last Post: jasonX
Yesterday 18:54
» Replies: 6
» Views: 136
GFYI [Official] Undelete 11 Professional...
Last Post: Raur
Yesterday 17:15
» Replies: 9
» Views: 582
Apeaksoft Video Converter Ultimate 1.0.1...
Last Post: smieszko
Yesterday 16:27
» Replies: 0
» Views: 20
PM text black?
Last Post: damien76
Yesterday 16:17
» Replies: 7
» Views: 145
ESET PRODUCTS FOR WINDOWS DEVICES 2019
Last Post: damien76
Yesterday 16:13
» Replies: 2
» Views: 52
GFYI [Official] Macrium Reflect Home Val...
Last Post: damien76
Yesterday 16:11
» Replies: 28
» Views: 1663
Win a Samsung Galaxy S10
Last Post: tofana
Yesterday 13:20
» Replies: 0
» Views: 28
Mozilla Firefox 66 Now Available for Dow...
Last Post: silversurfer
Yesterday 13:15
» Replies: 0
» Views: 21
Chromium-Based Microsoft Edge Installer ...
Last Post: silversurfer
Yesterday 13:15
» Replies: 0
» Views: 28
DOOGEE S40
Last Post: tofana
Yesterday 12:19
» Replies: 0
» Views: 18
Roku Streaming Stick+ Giveaway
Last Post: tofana
Yesterday 12:06
» Replies: 0
» Views: 31

[-]
Staffs Online
There are no staff members currently online.