Pandavirtualization: Exploiting the Xen hypervisor (Project Zero)
The latest installmentfrom Google's Project Zero covers the development of an exploit for this unpleasant Xenvulnerability. "To demonstrate the impact of the issue, Icreated an exploit that, when executed in one 64-bit PV guest with rootprivileges, will execute a shell command as root in all other 64-bit PVguests (including dom0) on the same physical machine."