Mobyproject

Hyperkit

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.11%
  • Veröffentlicht 20.02.2023 17:15:11
  • Zuletzt bearbeitet 21.11.2024 06:07:52

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior, a malicious guest can trigger a vulnerability in the host by abusing the disk driver that may lead to the disclosure of the host memory i...

  • EPSS 0.03%
  • Veröffentlicht 17.02.2023 23:15:12
  • Zuletzt bearbeitet 21.11.2024 06:07:52

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107, function `pci_vtsock_proc_tx` in `virtio-sock` can lead to to uninitialized memory use. In this situation, there is a check for the return value to...

  • EPSS 0.03%
  • Veröffentlicht 17.02.2023 23:15:11
  • Zuletzt bearbeitet 21.11.2024 06:07:51

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior of HyperKit, `virtio.c` has is a call to `vc_cfgread` that does not check for null which when called makes the host crash. This issue may ...

  • EPSS 0.03%
  • Veröffentlicht 17.02.2023 23:15:11
  • Zuletzt bearbeitet 21.11.2024 06:07:52

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior of HyperKit, ` vi_pci_write` has is a call to `vc_cfgwrite` that does not check for null which when called makes the host crash. This issu...

  • EPSS 0.03%
  • Veröffentlicht 17.02.2023 23:15:11
  • Zuletzt bearbeitet 21.11.2024 06:07:52

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior of HyperKit, the implementation of `qnotify` at `pci_vtrnd_notify` fails to check the return value of `vq_getchain`. This leads to `struct...