Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I think the author actually meant "Yes, vmscape can leak information on Xen, but only leaks from a miniature Dom0 process." Leaking from an small pool not being a security issue they seemed to consider.

Agreed on the point about hw-level mitigation. The leakage still exists. Containing it in a watertight box is quick and effective, and it does avoid extra overhead. But it doesn't patch the hole.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: