KLA11754
Multiple vulnerabilities in Oracle Virtualbox
Updated: 05/29/2020
Detect date
?
03/16/2020
Severity
?
Warning
Description

Multiple vulnerabilities were found in Oracle VirtualBox. Malicious users can exploit these vulnerabilities to obtain sensitive information, cause denial of service.

Below is a complete list of vulnerabilities:

  1. Vulnerability in Core component of Oracle VM VirtualBox can be exploited remotely to obtain sensitive information.
  2. Vulnerability in Core component of Oracle VM VirtualBox can be exploited remotely to obtain sensitive information, bypass security restrictions, cause denial of service.
  3. Vulnerability in Core component of Oracle VM VirtualBox can be exploited remotely to cause denial of service.
  4. Vulnerability in Core component of Oracle VM VirtualBox can be exploited remotely to bypass security restrictions.
Affected products

Oracle VirtualBox prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6

Solution

Update to the latest version
Download Oracle Virtual Box

Original advisories

Oracle Critical Patch Update Advisory – Aptil 2020

Impacts
?
OSI 
[?]

DoS 
[?]
Related products
Oracle VirtualBox
CVE-IDS
?
CVE-2020-27410.0Unknown
CVE-2020-27420.0Unknown
CVE-2020-27430.0Unknown
CVE-2020-27480.0Unknown
CVE-2020-27580.0Unknown
CVE-2020-28940.0Unknown
CVE-2020-29020.0Unknown
CVE-2020-29050.0Unknown
CVE-2020-29070.0Unknown
CVE-2020-29080.0Unknown
CVE-2020-29090.0Unknown
CVE-2020-29100.0Unknown
CVE-2020-29110.0Unknown
CVE-2020-29130.0Unknown
CVE-2020-29140.0Unknown
CVE-2020-29290.0Unknown
CVE-2020-29510.0Unknown
CVE-2020-29580.0Unknown
CVE-2020-29590.0Unknown
CVE-2020-25750.0Unknown