Full Disclosure mailing list archives

Virtual PC 2007 BUG


From: Walied Assar <waliedassar () gmail com>
Date: Wed, 31 Oct 2012 15:14:42 +0200

Hello,

I have found a bug in Virtual PC 2007 that may be considered as some kind
of Denial Of Service. Any user can execute certain sequence of x86
instructions to force the the VM to restart.

Description:
http://waleedassar.blogspot.com/2012/10/virtual-pc-machine-reset.html

POC:
http://code.google.com/p/ollytlscatch/downloads/detail?name=VirtualPC_IntError.exe

N.B. I have not tested any other Virtualization Product from the same
vendor. The bug is confirmed only on Virtual PC 2007 6.0.156.0.

Kind Regards
Waliedassar
http://www.twitter.com/waleedassar
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: