Intel® Software Guard Extensions (Intel® SGX)
Discussion board focused on hardware-based isolation and memory encryption to provide extended code protection in solutions.

Why Qemu-SGX not maintained any more?

LeoneChen
初学者
2,636 次查看

intel/qemu-sgx (github.com)

It say "This project has been identified as having known security escapes.", but what known security escapes?

0 项奖励
1 解答
Iffa_Intel
主持人
2,556 次查看

Yes, that is just to share you the concept of that attack in QEMU.

Focus on the fact that the vulnerability attacks host operating system that runs QEMU.

QEMU-SGX, as the name implies, it uses QEMU so even if Enclave don't trust OS&Host App in VM, or no VM, the vulnerability exist.

 

Cordially,

Iffa


在原帖中查看解决方案

0 项奖励
7 回复数
Iffa_Intel
主持人
2,604 次查看

Hi,


Generally, the QEMU is vulnerable to Virtual Machine Escape attack which triggered when fragment packets are reassembled for processing. This allows an attacker to perform arbitrary code execution at the same privilege level as QEMU itself, and completely crash the QEMU process.



Cordially,

Iffa


0 项奖励
LeoneChen
初学者
2,593 次查看

Thanks for reply!

 

Any hyper-links or details about this vulnerability or news?

0 项奖励
Iffa_Intel
主持人
2,586 次查看

Here it is (Note that this is public info):

1. Vulnerability in QEMU allows attackers to perform virtual machine escape

2. NVD for (no 1) vulnerability

3. KVM breakout

 

Hope this helps!

If you don't have any further inquiries, shall I close this case?

 

 

Cordially,

Iffa

0 项奖励
LeoneChen
初学者
2,573 次查看

But it seems that Qemu escape will not influent security of Enclave in VM, since Enclave don't trust OS&Host App in VM

0 项奖励
Iffa_Intel
主持人
2,557 次查看

Yes, that is just to share you the concept of that attack in QEMU.

Focus on the fact that the vulnerability attacks host operating system that runs QEMU.

QEMU-SGX, as the name implies, it uses QEMU so even if Enclave don't trust OS&Host App in VM, or no VM, the vulnerability exist.

 

Cordially,

Iffa


0 项奖励
LeoneChen
初学者
2,533 次查看

Thanks!

 

Thus it's due to Qemu problem, not an SGX problem

0 项奖励
Iffa_Intel
主持人
2,509 次查看

Glad that helps!


Intel will no longer monitor this thread since this issue has been resolved. If you need any additional information from Intel, please submit a new question. 



Cordially,

Iffa


0 项奖励
回复