5 ms·
Some of the comments here talk about the risk this poses for multi tenant vm providers. Wouldn't this also be a risk for people using VMs to sandbox untrusted
by CoastalCoder 3mo ago
Some of the comments here talk about the risk this poses for multi tenant vm providers.
Wouldn't this also be a risk for people using VMs to sandbox untrusted code running on trusted hosts?
- bonzini 3mo agoIn that case you'd have to combine this vulnerability with a local privilege escalation to reach guest kernel mode. Also the vulnerability requires enabling nested virtualization on the VM.