Why does Proxmox run KVM process as root?
An exploit in KVM could allow execution of code in the host running as the user of the KVM process.
It would be much more secure to run KVM processes as an un-privlidged user.
Also, I noticed Debian issued a KVM related security patch today, is Proxmox already patched?
CVE-2014-0150
An exploit in KVM could allow execution of code in the host running as the user of the KVM process.
It would be much more secure to run KVM processes as an un-privlidged user.
Also, I noticed Debian issued a KVM related security patch today, is Proxmox already patched?
CVE-2014-0150