Lucene search

K
redosRedosROS-20230907-02
HistorySep 07, 2023 - 12:00 a.m.

ROS-20230907-02

2023-09-0700:00:00
redos.red-soft.ru
14
oracle vm virtualbox
vulnerability
remote code execution
rdp protocol
resource release errors

CVSS3

8.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.004

Percentile

73.0%

Vulnerability in the Core component of Oracle VM VirtualBox virtual machine is related to resource release errors
resources. Exploitation of the vulnerability could allow a remote attacker to execute arbitrary code or gain full control of an application using the RDP protocol.
arbitrary code or gain full control over an application using the RDP protocol.

OSVersionArchitecturePackageVersionFilename
redos7.3x86_64virtualbox< 6.1.46-1UNKNOWN

CVSS3

8.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.004

Percentile

73.0%