目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2018-3295 PoC — Oracle Virtualization VM VirtualBox组件安全漏洞

来源
关联漏洞
标题: Oracle Virtualization VM VirtualBox组件安全漏洞 (CVE-2018-3295)
Description:Oracle Virtualization是美国甲骨文(Oracle)公司的一套虚拟化解决方案。该方案用于统一管理从应用程序到磁盘的整个硬件和软件体系,可实现从桌面到数据中心的虚拟化。VM VirtualBox是其中的一个虚拟机组件。 Oracle Virtualization中的VM VirtualBox组件5.2.20之前版本的Core子组件存在安全漏洞。本地攻击者可利用该漏洞控制组件,影响数据的保密性、完整性和可用性。
Description
Exploitation of VirtualBox vulnerability (https://nvd.nist.gov/vuln/detail/CVE-2018-3295)
介绍
# e1000_vulnerability_exploit

## Installation

> $ ./install.sh

Only own version build are supported yet. Please choose *own* and *debug* to build your debug version.

Warning : During the process an error can occur, especially during the sources compilation. You can have something like "Exit with error status 2."

Please contact us at nicolas.dureisseix@etu.enseeiht.fr if an error occurs.

## Debug

Use RTLogPrintf(string, args) to print debug message. The debug will go into .log files in VirtualBox folder.

Look into the files :

* src/VBox/Devices/Network/DevE1000 .cpp / .h ;

* src/VBox/Devices/Network/DevEEPROM .cpp / .h.

You can use `cleanlog` script to clean all logs and `printlog` to print them in the console.

## VM

There is not script for VM creation/management yet. Please create a VM called ProjetLong with 2CPU Cores and 8Gb RAM.

Download `fake_driver` folder into the VM and run `load_fake_driver`. Use `reload_fake_driver` if you have already load the driver and you want to apply changes.

## Note

Some scripts will arrive to make it easier for users, on VM and VMM.
文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →