Tag
Qubes Security Bulletin 118 details a critical vulnerability where a malicious qube can exploit the qvm-copy-to-vm error reporting mechanism to execute arbitrary code in the privileged dom0 domain.