Security · 9h ago
OVH Plans Mass Reboots to Fix Critical Hypervisor Bug, Skips Customer Consent
French cloud provider OVH backported a patch for the critical Januscape hypervisor vulnerability into Debian without customer consent. The fix requires mass reboots that could cause downtime, though OVH claims minimal impact. An Australian server will be used as a crash-test dummy to test the reboot process.
Meridian48 take
OVH's unilateral move to patch without consent highlights the tension between security urgency and customer trust, especially when downtime is involved.
Read the full reporting
OVH reveals semi-secret plan to fix critical Januscape hypervisor bug with mass reboots – and an Australian crash-test dummy →
The Register
hypervisor-bugcloud-security