Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 23 Oct 2020 08:33:22 -0400
From:      Ryan Moeller <freqlabs@FreeBSD.org>
To:        Konstantin Belousov <kostikbel@gmail.com>, Ryan Moeller <freqlabs@freebsd.org>
Cc:        src-committers@freebsd.org, svn-src-all@freebsd.org, svn-src-stable@freebsd.org, svn-src-stable-12@freebsd.org
Subject:   Re: svn commit: r366965 - stable/12/usr.sbin/bhyve
Message-ID:  <9590af32-1b4c-23b8-dede-2554ea2b256c@FreeBSD.org>
In-Reply-To: <20201023122726.GZ2643@kib.kiev.ua>
References:  <202010231048.09NAmEW8090391@repo.freebsd.org> <20201023122726.GZ2643@kib.kiev.ua>

next in thread | previous in thread | raw e-mail | index | archive | help

On 10/23/20 8:27 AM, Konstantin Belousov wrote:
> Does this description mean that if guest writes garbage into base, it can
> crash monitor ?

The guest can crash the bhyve process by writing garbage into device 
registers, yes.

A bad base address will be mapped to NULL and eventually gets passed as 
src to memcpy.

-Ryan




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?9590af32-1b4c-23b8-dede-2554ea2b256c>