FreeBSD-SA-24:18.ctl impacted systems

"Wall, Stephen" <[email protected]> Mon, 18 Nov 2024 14:37:16 +0000
Newsgroups gmane.os.freebsd.security.general
Message-ID <MW4PR09MB928420FD37A426CE88741428EE272@MW4PR09MB9284.namprd09.prod.outlook.com>
Good day, folks.

I am seeking clarification of statements in https://www.freebsd.org/security/advisories/FreeBSD-SA-24:18.ctl.asc.
Section III, Impact says “A malicious guest could cause a Denial of Service (DoS) on the host.”
Does this imply that only FreeBSD systems acting as a Virtualization Manager are impacted?  Or could other VM hosts be impacted by a FreeBSD guest?  And are bare metal installations affected at all?
Also, I am unfamiliar with ctld(8) – is it only used with virtualization, or could it be used in the aforementioned bare metal FreeBSD, and for what purpose?

Thank you.
Steve Wall

--
Stephen Wall
Senior Staff Software Engineer
585.924.7550
[cid:[email protected]]
REDCOM Laboratories, Inc.<https://www.redcom.com/>
Research, Engineering, & Development in Communications
One Redcom Center, Victor, NY 14564-0995
image001.png (image/png, 10 KB) - not displayed