好友
阅读权限40
听众
最后登录1970-1-1
|
本帖最后由 cmc5410 于 2017-3-11 13:39 编辑
https://github.com/ivildeed/vmw_vmx_overloader
Loading unsigned code into kernel of latest Windows 10 (64) with help of VMware Workstation Pro/Player design flaw.
[...] So by simply overwriting one function (Host64ToVmm) it is possible to execute our code in kernelmode.
[...] VMware was contacted regarding this, as a result issues was addressed in security advisory: VMSA-2017-0003 (CVE-2017-4898)
浏览github发现的
详细可以看作者的详细说明
许多签名的驱动都有这样的漏洞 这只是其中之一
vmw_vmx_overloader.zip
(285.95 KB, 下载次数: 99)
|
免费评分
-
查看全部评分
本帖被以下淘专辑推荐:
- · 学习及教程|主题: 1073, 订阅: 1130
|