{"id":5286,"date":"2015-11-03T11:41:29","date_gmt":"2015-11-03T11:41:29","guid":{"rendered":"https:\/\/ihs.com.tr\/blog\/?p=5286"},"modified":"2015-11-03T11:41:29","modified_gmt":"2015-11-03T11:41:29","slug":"xen-7-yillik-vm-escape-acigini-kapatti","status":"publish","type":"post","link":"https:\/\/www.ihs.com.tr\/blog\/xen-7-yillik-vm-escape-acigini-kapatti\/","title":{"rendered":"Xen, 7 y\u0131ll\u0131k &#8220;VM Escape&#8221; a\u00e7\u0131\u011f\u0131n\u0131 kapatt\u0131"},"content":{"rendered":"<p><span style=\"font-size: 14pt;\">Xen, 7 y\u0131ll\u0131k <strong>VM Escape Hypervisor a\u00e7\u0131\u011f\u0131n\u0131<\/strong> \u00f6nceki g\u00fcn itibariyle kapatt\u0131. Bu a\u00e7\u0131k sald\u0131rgan\u0131n guest <a href=\"https:\/\/www.ihs.com.tr\/sunucu-kiralama\/bulut-sunucu.html\" target=\"_blank\">Sanal Sunucu<\/a> \u00fczerinden ka\u00e7\u0131\u015f (escape) yaparak, <strong>i\u015fletim sistemini kontrol edebilmesine<\/strong> imkan sa\u011fl\u0131yor.<\/span><\/p>\n<p><span style=\"font-size: 14pt;\">A\u00e7\u0131k o kadar kritik bir probleme sebep oluyor ki, g\u00fcvenlik a\u011f\u0131rl\u0131kl\u0131 bir i\u015fletim sistemi olan Qubes OS Project ekibi <strong>&#8220;\u015fimdiye kadar g\u00f6rd\u00fckleri en k\u00f6t\u00fc a\u00e7\u0131k&#8221;<\/strong> olarak tan\u0131mlamalar\u0131na sebep olmu\u015f.<\/span><\/p>\n<p><span style=\"font-size: 14pt;\">T\u00fcm Qubes OS Project&#8217;in VM&#8217;lerinin &#8220;paravirtualized VM&#8217;ler oldu\u011fu d\u00fc\u015f\u00fcn\u00fcl\u00fcrse, sistemin tamamen kontrol edebilmesine imkan tan\u0131yan bu a\u00e7\u0131k, <strong>Qubes OS Project i\u00e7in tam bir kabus olarak adland\u0131r\u0131labilir.<\/strong><\/span><\/p>\n<p><span style=\"font-size: 14pt;\">Bu arada belirtmkte fayda var, <strong>&#8220;paravirtualized VM&#8221;<\/strong> Xen Project taraf\u0131ndan geli\u015ftirilmi\u015f ve VM&#8217;lerin performans\u0131n\u0131 ve di\u011fer yetkinliklerini <strong>optimize eden bir sanalla\u015ft\u0131rma tekni\u011fi<\/strong> denilebilir.<\/span><\/p>\n<p><a href=\"https:\/\/www.ihs.com.tr\/blog\/wp-content\/uploads\/2015\/11\/qubes-logo-icon.png\" data-rel=\"penci-gallery-image-content\" ><img decoding=\"async\" class=\"aligncenter size-full wp-image-5302\" src=\"https:\/\/www.ihs.com.tr\/blog\/wp-content\/uploads\/2015\/11\/qubes-logo-icon.png\" alt=\"qubes-logo-icon\" width=\"128\" height=\"128\" \/><\/a><\/p>\n<p><span style=\"font-size: 14pt;\">&#8220;VM escape&#8221; olarak da belirtilen VM&#8217;lerden \u00e7\u0131k\u0131\u015f\/ka\u00e7\u0131\u015f yap\u0131larak sistemin ele ge\u00e7irilmesi t\u00fcm VM altyap\u0131s\u0131 i\u00e7in b\u00fcy\u00fck bir tehlikeyi de beraberinde getiriyor. \u00c7\u00fcnk\u00fc tek bir VM&#8217;den ka\u00e7\u0131\u015f, ayn\u0131 <strong>makine \u00fczerindeki t\u00fcm di\u011fer VM&#8217;leri de etkileyebiliyor.<\/strong><\/span><\/p>\n<p><span style=\"font-size: 14pt;\">Xen&#8217;in a\u00e7\u0131klad\u0131\u011f\u0131na g\u00f6re Xen 3.4 ve daha yeni, x86 sistemler bu a\u00e7\u0131ktan etkileniyor ve sadece 32- veya 64-bit <strong>&#8220;paravirtualized guest&#8221; sistemler bu a\u00e7\u0131ktan etkileniyor.<\/strong><\/span><\/p>\n<p><span style=\"font-size: 14pt;\">Bu kadar \u00f6nemli bir a\u00e7\u0131\u011f\u0131n <strong>7 senedir sistemlerde olmas\u0131<\/strong> ve bunun bu kadar kolay bir \u015fekilde k\u00f6t\u00fcye kullan\u0131labilecek olmas\u0131 Qubes ekibinde ciddi soru i\u015faretleri yaratm\u0131\u015f ve hatta Xen platformunu bile sorgulatm\u0131\u015f gibi g\u00f6r\u00fcn\u00fcyor.<\/span><\/p>\n<p><span style=\"font-size: 14pt;\">\u00dcstelik benzer bir VM escape a\u00e7\u0131\u011f\u0131 daha <strong>ge\u00e7ti\u011fimiz Temmuz ay\u0131nda Xen taraf\u0131ndan kapat\u0131lm\u0131\u015ft\u0131.<\/strong><\/span><\/p>\n<p><span style=\"font-size: 14pt;\">Son d\u00f6nemde Xen&#8217;de d\u00fczenli olarak ortaya \u00e7\u0131kan bug&#8217;lar da olduk\u00e7a can s\u0131k\u0131c\u0131 ve <strong>g\u00fcven sars\u0131c\u0131 olarak g\u00f6r\u00fcl\u00fcyor.<\/strong> Xen gibi oturmu\u015f ve olgunla\u015fm\u0131\u015f bir sistemde bu a\u00e7\u0131klar\u0131n bu kadar kritik seviyede ortaya \u00e7\u0131kmas\u0131 pek \u00e7oklar\u0131 i\u00e7in kabul edilebilir bir durum de\u011fil.<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Xen, 7 y\u0131ll\u0131k VM Escape Hypervisor a\u00e7\u0131\u011f\u0131n\u0131 \u00f6nceki g\u00fcn itibariyle kapatt\u0131. Bu a\u00e7\u0131k sald\u0131rgan\u0131n guest Sanal Sunucu \u00fczerinden ka\u00e7\u0131\u015f (escape) yaparak, i\u015fletim&hellip;<\/p>\n","protected":false},"author":3,"featured_media":5301,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-5286","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-haberler"],"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts\/5286","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=5286"}],"version-history":[{"count":5,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts\/5286\/revisions"}],"predecessor-version":[{"id":5333,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts\/5286\/revisions\/5333"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/media\/5301"}],"wp:attachment":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=5286"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=5286"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=5286"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}