Lucene search

K
kasperskyKaspersky LabKLA70468
HistoryJun 18, 2024 - 12:00 a.m.

KLA70468 DoS vulnerabilities in Oracle VirtualBox

2024-06-1800:00:00
Kaspersky Lab
threats.kaspersky.com
13
oracle virtualbox
dos
vulnerabilities
cve
update
oracle vm virtualbox

CVSS3

8.2

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

AI Score

7.4

Confidence

Low

EPSS

0

Percentile

10.9%

An unspecified vulnerabilities were found in Oracle VirtualBox. None of these vulnerabilities may be remotely exploitable without authentication, i.e., none may be exploited over a network without requiring user credentials.

Original advisories

[Oracle Critical Patch Update Advisory – July 2024](https://www.oracle.com/security-alerts/cpujul2024.html#AppendixOVIROracle Critical Patch Update Advisory - July 2024)

Related products

Oracle-VirtualBox

CVE list

CVE-2024-21141 critical

CVE-2024-21164 warning

CVE-2024-21161 high

Solution

Update to the latest version

Oracle software downloads

Impacts

  • OSI

Obtain sensitive information. Exploitation of vulnerabilities with this impact can lead to capturing by abuser information, critical for user or system.

  • DoS

Denial of service. Exploitation of vulnerabilities with this impact can lead to loss of system availability or critical functional fault.

  • SB

Security bypass. Exploitation of vulnerabilities with this impact can lead to performing actions restricted by current security settings.

  • PE

Privilege escalation. Exploitation of vulnerabilities with this impact can lead to performing by abuser actions, which are normally disallowed for current role.

Affected Products

  • Oracle VM VirtualBox earlier than 7.0.20

CVSS3

8.2

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

AI Score

7.4

Confidence

Low

EPSS

0

Percentile

10.9%