KLA10954
Remote Security Vulnerability in Oracle VM VirtualBox
Updated: 05/22/2020
Detect date
?
06/16/2016
Severity
?
High
Description

A remote security vulnerability was found in Oracle Virtualization (Oracle VM VirtualBox component). By exploiting this vulnerability malicious users can gain privileges and cause a partial denial of service. This vulnerability can be exploited remotely over the HTTP protocol.


Technical details

Exploiting this vulnerability successfully requires user interaction (with not the same person as the unauthenticated attacker).

This vulnerability occurs in subcomponent GUI of Oracle Virtualization.

Affected products

Oracle VM VirtualBox earlier than 5.0.32
Oracle VM VirtualBox 5.1.x earlier than 5.1.14

Solution

Update to latest versions
Download Oracle VM VirtualBox

Original advisories

Oracle Critical Patch Update Advisory

Impacts
?
DoS 
[?]

PE 
[?]
Related products
Oracle VirtualBox
CVE-IDS
?