QEMU is the user-space virtual machine monitor that provides device emulation for KVM guests, and it is the base of the Linux virtualization stack that Proxmox, Nutanix AHV, and OpenStack build on. The targets here are the host and its libvirt control, the QEMU device models that back guest-to-host escapes, the libvirt management plane, and the qcow2 disks at rest. The KVM kernel accelerator beneath it is a separate target.
Subtopics#
- Host access and shell: reaching the host and libvirt.
- Guest to host escape: breaking out through QEMU device models.
- Management plane: libvirt, oVirt, and RHV.
- Disk and snapshot theft: qcow2 and raw images.
- Known escape exploits: named QEMU device breakouts.