GHSL-2021-058: Disclosure of the host memory into the virtualized guest in hyperkit - CVE-2021-32847
Published Oct 5, 2021
·Updated
A malicious guest can trigger a vulnerability in the host by abusing the disk driver that may lead to the disclosure of the host memory into the virtualized guest.
Affected Software
1 affected component
Docker HyperKit
Event History
Oct 5, 2021
Advisory Published
via GitHub Security Lab·12:00 AM
Data Sourced
via GitHub Security Lab·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of GHSL-2021-058?
The severity of GHSL-2021-058 is rated as 55, indicating a moderate risk associated with the vulnerability.
2
How do I fix GHSL-2021-058?
To fix GHSL-2021-058, update to the latest version of Docker HyperKit which includes patches for the vulnerability.
3
Who is affected by GHSL-2021-058?
Users running Docker HyperKit in a virtualized environment may be affected by GHSL-2021-058.
4
What can a malicious guest do in relation to GHSL-2021-058?
A malicious guest can exploit the vulnerability in GHSL-2021-058 to disclose host memory into the virtualized guest.
5
What is the CVE associated with GHSL-2021-058?
The CVE associated with GHSL-2021-058 is CVE-2021-32847.