Critical KVM VM Escape Vulnerability Patched
A severe vulnerability in KVM could allow a malicious guest to ‘punch through’ the hypervisor boundary and compromise the host system. The bug stemmed from a failure to properly validate buffer sizes during Page State Change requests, enabling heap corruption and memory leaks. The fix involves rejecting external scratch areas for GHCB v2+ guests, eliminating the entire attack vector.