[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-devel] Bug - IPv4 Address


  • To: "Ivan Stojcevic (Tronyx)" <ivans2901@xxxxxx>
  • From: Pasi Kärkkäinen <pasik@xxxxxx>
  • Date: Tue, 22 Apr 2014 12:06:48 +0300
  • Cc: xen-devel@xxxxxxxxxxxxx
  • Delivery-date: Tue, 22 Apr 2014 09:07:01 +0000
  • List-id: Xen developer discussion <xen-devel.lists.xen.org>

On Sat, Apr 19, 2014 at 11:41:57AM +0200, Ivan Stojcevic (Tronyx) wrote:
>    Hello,
> 

Hello,

> 
>    I just found a very sensitive bug in KVM and Xen platforms. Easily if you
>    have VPS hosted on Xen or KVM you can assign yourself a IPv4 address for
>    free and bypass regular system with billing.
> 
>    I tried this on many VPS hosting companies and it work on all. If you
>    would like to talk with me about this, you can get me on skype: ivans2901
> 

This has nothing to do with Xen or KVM. It's a bug in the 
vpshosting/cloud/billing platform they're using,
or more specifically in the broken networking/security configuration which 
allows that.

-- Pasi


_______________________________________________
Xen-devel mailing list
Xen-devel@xxxxxxxxxxxxx
http://lists.xen.org/xen-devel


 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.