hyperlight-dev / hyperlight-dev/hyperlight-wasm
Stashing for Demo: CVE to demonstrate breakout
Open
Nobody has claimed this yet.
lifecycle/confirmed
- Dominant language
- Rust
- Stars
- 728
- Forks
- 39
- Avg merge
- 2d 6h
- Merged PRs (30d)
- 23
Description
If anyone ever wants to create a demo to show how hyperlight wasm handles a CVE/breakout from the sandbox, https://nvd.nist.gov/vuln/detail/CVE-2023-26489 might be a good thing to port into that demo.
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
The issue names no files, tests, or entry points; start by reading the linked NVD record for CVE-2023-26489 and then locate the repository's sandbox and demo structure. Done would be a documented, reproducible demo of the CVE or breakout behavior in the Wasm sandbox, with validation of the result.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- rust, wasm
- Domain
- security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100