A KVM zero-day vulnerability could let a guest VM take root on a cloud host, though no exploitation is confirmed.
Google has launched kvmCTF, a new vulnerability reward program (VRP) first announced in October 2023 to improve the security of the Kernel-based Virtual Machine (KVM) hypervisor that comes with ...
A long-dormant virtualization vulnerability was discovered that can expose AMD and Intel hosts to compromised virtual machines (VMs). Dubbed Januscape, the flaw affects memory-translation code in ...
A Linux KVM flaw on ARM64 can expose host kernel memory to guests and enable guest-to-host escape when nested virtualization is enabled.