Search found 9 matches
- 14. Sep 2018, 23:25
- Forum: VirtualBox on Linux Hosts
- Topic: VirtualBox 5.2.18 vulnerable to spectre/meltdown despite microcode being installed (#17987)
- Replies: 10
- Views: 16223
Re: VirtualBox 5.2.18 vulnerable to spectre/meltdown despite microcode being installed
The problem is that VirtualBox is not exposing SSBD flag (and of course, potentially also the relevant instructions, I cannot confirm the latter).
- 18. Jul 2018, 00:14
- Forum: VirtualBox on Windows Hosts
- Topic: Rules for patching VirtualBox VBoxVMM.dll?
- Replies: 14
- Views: 2587
Re: Rules for patching VirtualBox VBoxVMM.dll?
As I already explained, the guest is executing random untrusted code (in user mode). I do not wish that this user mode code is able to escalate itself to root level or even further to the host level. I am really confused by your last question... Of course the security hole needs to be patched and mi...
- 17. Jul 2018, 15:29
- Forum: VirtualBox on Windows Hosts
- Topic: Rules for patching VirtualBox VBoxVMM.dll?
- Replies: 14
- Views: 2587
Re: Rules for patching VirtualBox VBoxVMM.dll?
Just for the clarification: my problem is not solved since I am not using Windows 10 guest (for which the problem did solve), but instead mainly CentOS guest, and sometimes also Ubuntu guest.
- 14. Jul 2018, 01:46
- Forum: VirtualBox on Windows Hosts
- Topic: Rules for patching VirtualBox VBoxVMM.dll?
- Replies: 14
- Views: 2587
Re: Rules for patching VirtualBox VBoxVMM.dll?
Thanks. I was not aware of this option. I turned it on. The results are: In Windows 10 VM both of the Spectre mitigations are successfully enabled (after turning on the above mentioned option). Unfortunately, in Ubuntu VM nothing has changed, installed all updates and rebooted, no improvement. And i...
- 13. Jul 2018, 16:02
- Forum: VirtualBox on Windows Hosts
- Topic: Rules for patching VirtualBox VBoxVMM.dll?
- Replies: 14
- Views: 2587
Re: Rules for patching VirtualBox VBoxVMM.dll?
Thanks for the clarification! Do you know, is anybody working on the Spectre microcode compatibility update for VirtualBox? When could it be ready for testing? Also, it still would be interesting to know - is there any way to replace VirtualBox dll-s with custom signed ones? Is the only way forward ...
- 13. Jul 2018, 02:09
- Forum: VirtualBox on Windows Hosts
- Topic: Rules for patching VirtualBox VBoxVMM.dll?
- Replies: 14
- Views: 2587
Re: Rules for patching VirtualBox VBoxVMM.dll?
Thanks for trying the situation! I am sorry, the last log file must have been overwritten before I managed to zip it. I am sending a new correct one where the error is visible (this is with just one possible certificate and signing mode I had used, I also used different certificates and signing mode...
- 12. Jul 2018, 20:57
- Forum: VirtualBox on Windows Hosts
- Topic: Rules for patching VirtualBox VBoxVMM.dll?
- Replies: 14
- Views: 2587
Re: Rules for patching VirtualBox VBoxVMM.dll?
Thanks for the suggestion! Is it certain that VirtualBox will load the test-signed dll when testsigning is turned on? I turned testsigning on, rebooted. Tried signing either with my self-generated certificates (sha1 and sha256), or alternatively, with a test signing certificate automatically generat...
- 12. Jul 2018, 09:47
- Forum: VirtualBox on Windows Hosts
- Topic: Rules for patching VirtualBox VBoxVMM.dll?
- Replies: 14
- Views: 2587
Re: Rules for patching VirtualBox VBoxVMM.dll?
My intention is modifying the bytes that store the CPU microcode revision number returned to VM.
- 12. Jul 2018, 08:38
- Forum: VirtualBox on Windows Hosts
- Topic: Rules for patching VirtualBox VBoxVMM.dll?
- Replies: 14
- Views: 2587
Rules for patching VirtualBox VBoxVMM.dll?
I need to modify a few bytes in VBoxVMM.dll. Unfortunately, VirtualBox refuses to start the VM with the modified dll. My procedure was the following: 0. Closed VirtualBox and also killed VBoxSvc.exe 1. Modify the dll. 2. makecert -r -ss myPrivateCert1 -n "CN=My Company Inc." testCert1.cer ...