KLA11028
A read/write local files vulnerability in Oracle VM Virtual Box
Updated: 06/26/2019
Detect date
?
04/24/2017
Severity
?
High
Description

An unspecified vulnerability was found in Oracle VM VirtualBox. By exploiting this vulnerability low priveleged malicious users with logon to the infrastructure, where OracleVM VirtualBox is executed, can write to some of Oracle VM VirtualBox accessible data and read a subset of Oracle VM VirtualBox accessible data.

Affected products

Oracle VM VirtualBox earlier than 5.0.34
Oracle VM VirtualBox 5.1.x earlier than 5.1.16

Solution

Update to the latest versions
Download Oracle VM VirtualBox

Original advisories

Oracle Critical Patch Update Advisory

Impacts
?
WLF 
[?]

RLF 
[?]
CVE-IDS
?