| To: | bugtraq@securityfocus.com |
|---|---|
| Subject: | Re: Xbox 360 Hypervisor Privilege Escalation Vulnerability |
| From: | ron.kleinman@sun.com |
| Date: | 3 Mar 2007 21:05:47 -0000 |
| Delivered-to: | sp-com-lists@consult.net |
| Delivered-to: | bugtraq-list@securepoint.com |
| Delivered-to: | mailing list bugtraq@securityfocus.com |
| Delivered-to: | moderator for bugtraq@securityfocus.com |
| List-help: | <mailto:bugtraq-help@securityfocus.com> |
| List-id: | <bugtraq.list-id.securityfocus.com> |
| List-post: | <mailto:bugtraq@securityfocus.com> |
| List-subscribe: | <mailto:bugtraq-subscribe@securityfocus.com> |
| List-unsubscribe: | <mailto:bugtraq-unsubscribe@securityfocus.com> |
| Mailing-list: | contact bugtraq-help@securityfocus.com; run by ezmlm |
We have discovered a vulnerability in the Xbox 360 hypervisor that allows privilege escalation into hypervisor mode. Together with a method to inject data into non-privileged memory areas, this vulnerability allows an attacker with physical access to an Xbox 360 to run arbitrary code such as alternative operating systems with full privileges and full hardware access. Great Scott ... no wonder Microsoft is terrified! Do you realize what this means?? It means Solaris 10 on the XBox 360 ... a dream come true!! :-) |
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: VMware Workstation multiple denial of service and isolation manipulation vulnerabilities, emptysands |
|---|---|
| Next by Date: | ERRATA: [ GLSA 200703-01 ] Snort: Remote execution of arbitrary code, Raphael Marichez |
| Previous by Thread: | Re: Xbox 360 Hypervisor Privilege Escalation Vulnerability, jrgong420 |
| Next by Thread: | RE: Xbox 360 Hypervisor Privilege Escalation Vulnerability, Dr Joe |
| Indexes: | [Date] [Thread] [Top] [All Lists] |