Дата обнаружения
|
27/01/2017 |
Уровень угрозы
|
High |
Описание
|
Multiple serious vulnerabilities have been found in Oracle VM VirtualBox. Malicious users can exploit these vulnerabilities to cause a denial of service, gain priveleges, obtain sensitive information. Below is a complete list of vulnerabilities:
Technical details Exploiting vulnerabilities (1), (2) can also affect additional products. Vulnerabilities (1) can be exploited by a high privileged malicious user who is logged on to the infrastructure where Oracle VM VirtualBox is executed to compromise it. Vulnerability (2) can be exploited by a high privileged malicious user with network access. Exploiting vulnerability (2) successfully requires user interaction (with not the same person as the unauthenticated attacker). |
Пораженные продукты
|
Oracle VM VirtualBox earlier than 5.0.32 |
Решение
|
Update to latest versions |
Первичный источник обнаружения
|
Oracle Critical Patch Update Advisory |
Оказываемое влияние
?
|
OSI
[?]
DoS
[?]
PE
[?]
|
Связанные продукты
|
Oracle VirtualBox |
CVE-IDS
|
|
Эксплуатация
|
The following public exploits exists for this vulnerability: |
Узнай статистику распространения уязвимостей в твоем регионе |