MikeTrendsTrends right now

search

skip_block_zeroing

Trends

  1. 1
    Cloudflare Containers flaw exposed cross-tenant data fragments●Discover how a Cloudflare Containers data flaw exposed cross-tenant fragments. Learn about the skip_block_zeroing thin pMmastodonTechnologyCybersecurity116 min ago

    A reported vulnerability in Cloudflare Containers allowed fragments of one customer's data to leak into other tenants' environments. The issue is linked to a thin provisioning flaw involving the skip_block_zeroing parameter, which can leave stale data in uninitialized storage blocks rather than zeroing it out. Security communities are sharing technical details of the flaw and discussing its implications for multi-tenant cloud isolation.

  2. 2
    Cloudflare fixes cross-tenant data exposure in Containers sandboxes●🤖 Cloudflare Containers/Sandboxes cross-tenant data exposure: dm-thin storage pools ran with skip_block_zeroing, so a WoMmastodonTechnologyCybersecurity220 h ago

    A cross-tenant data exposure flaw in Cloudflare's Containers and Sandboxes has been disclosed and fixed. The issue stemmed from dm-thin storage pools running with skip_block_zeroing enabled, meaning newly written 4 KiB pages into unmapped 64 KiB blocks could leave residual data on raw devices. A Workers Paid tenant could reportedly read up to 60 KiB of data left behind by a previous tenant from /dev/vdc. Cloudflare has patched the issue, and security communities are discussing the implications of shared-storage isolation failures in multi-tenant cloud platforms.