ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Most Data centers are vulnerable to Venom

    News
    5
    9
    1.0k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • ?
      A Former User
      last edited by

      The cause is a widely-ignored, legacy virtual floppy disk controller that, if sent specially crafted code, can crash the entire hypervisor. That can allow a hacker to break out of their own virtual machine to access other machines -- including those owned by other people or companies.

      The bug, found in open-source computer emulator QEMU, dates back to 2004. Many modern virtualization platforms, including Xen, KVM, and Oracle's VirtualBox, include the buggy code.

      VMware, Microsoft Hyper-V, and Bochs hypervisors are not affected.

      http://www.zdnet.com/article/venom-security-flaw-millions-of-virtual-machines-datacenters/

      1 Reply Last reply Reply Quote 1
      • gjacobseG
        gjacobse
        last edited by

        Well that can't be good. I know that Oracle's VB is something I've tinkered with a time or two.. Although nothing to the level of a datacenter. It was just testing so wasn't up long - isnt up right now.

        1 Reply Last reply Reply Quote 0
        • scottalanmillerS
          scottalanmiller
          last edited by

          This will impact nearly everyone since it is Amazon, Rackspace, Softlayer, Digital Ocean, Vultr, etc.

          1 Reply Last reply Reply Quote 0
          • dafyreD
            dafyre
            last edited by

            From what I understand is that the VMs need to have a virtual Floppy Drive actually installed on the VM in order for them to own the hypervisor... Is that right?

            scottalanmillerS 1 Reply Last reply Reply Quote 0
            • scottalanmillerS
              scottalanmiller @dafyre
              last edited by

              @dafyre said:

              From what I understand is that the VMs need to have a virtual Floppy Drive actually installed on the VM in order for them to own the hypervisor... Is that right?

              I believe so. And I know of none that do that. I always disable that option because.... why do I want an extra driver installed?

              1 Reply Last reply Reply Quote 1
              • StrongBadS
                StrongBad
                last edited by

                So likely lots of reboots coming this week.

                1 Reply Last reply Reply Quote 0
                • scottalanmillerS
                  scottalanmiller
                  last edited by

                  I just got a bunch of tickets from Rackspace. Guess what they are going to be for.

                  1 Reply Last reply Reply Quote 0
                  • ?
                    A Former User
                    last edited by

                    Amazon for some reason said they were never vulnerable to this attack.

                    scottalanmillerS 1 Reply Last reply Reply Quote 0
                    • scottalanmillerS
                      scottalanmiller @A Former User
                      last edited by

                      @thecreativeone91 said:

                      Amazon for some reason said they were never vulnerable to this attack.

                      Likely they removed that code as it was unnecessary.

                      1 Reply Last reply Reply Quote 0
                      • 1 / 1
                      • First post
                        Last post