bugtraq
[Top] [All Lists]

Re: Xbox 360 Hypervisor Privilege Escalation Vulnerability

To: bugtraq@securityfocus.com
Subject: Re: Xbox 360 Hypervisor Privilege Escalation Vulnerability
From: ron.kleinman@sun.com
Date: 3 Mar 2007 21:05:47 -0000
Delivered-to: sp-com-lists@consult.net
Delivered-to: bugtraq-list@securepoint.com
Delivered-to: mailing list bugtraq@securityfocus.com
Delivered-to: moderator for bugtraq@securityfocus.com
List-help: <mailto:bugtraq-help@securityfocus.com>
List-id: <bugtraq.list-id.securityfocus.com>
List-post: <mailto:bugtraq@securityfocus.com>
List-subscribe: <mailto:bugtraq-subscribe@securityfocus.com>
List-unsubscribe: <mailto:bugtraq-unsubscribe@securityfocus.com>
Mailing-list: contact bugtraq-help@securityfocus.com; run by ezmlm
We have discovered a vulnerability in the Xbox 360 hypervisor that allows 
privilege escalation into hypervisor mode. Together with a method to inject 
data into non-privileged memory areas, this vulnerability allows an attacker 
with physical access to an Xbox 360 to run arbitrary code such as alternative 
operating systems with full privileges and full hardware access.

Great Scott ... no wonder Microsoft is terrified!  Do you realize what this 
means??  It means Solaris 10 on the XBox 360 ... a dream come true!!  :-)

<Prev in Thread] Current Thread [Next in Thread>