Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.851545
Kategorie:SuSE Local Security Checks
Titel:openSUSE: Security Advisory for virtualbox (openSUSE-SU-2017:1142-1)
Zusammenfassung:The remote host is missing an update for the 'virtualbox'; package(s) announced via the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'virtualbox'
package(s) announced via the referenced advisory.

Vulnerability Insight:
This update for virtualbox to version 5.1.22 fixes the following issues:

These security issues were fixed (bsc#1034854):

- CVE-2017-3561: Vulnerability in the Oracle VM VirtualBox component of
Oracle Virtualization (subcomponent: Core). Easily exploitable
vulnerability allows low privileged attacker with logon to the
infrastructure where Oracle VM VirtualBox executes to compromise Oracle
VM VirtualBox. Successful attacks of this vulnerability can result in
takeover of Oracle VM VirtualBox.

- CVE-2017-3563: Vulnerability in the Oracle VM VirtualBox component of
Oracle Virtualization (subcomponent: Core). Easily exploitable
vulnerability allows low privileged attacker with logon to the
infrastructure where Oracle VM VirtualBox executes to compromise Oracle
VM VirtualBox. Successful attacks of this vulnerability can result in
takeover of Oracle VM VirtualBox.

- CVE-2017-3576: Vulnerability in the Oracle VM VirtualBox component of
Oracle Virtualization (subcomponent: Core). Easily exploitable
vulnerability allows low privileged attacker with logon to the
infrastructure where Oracle VM VirtualBox executes to compromise Oracle
VM VirtualBox. Successful attacks of this vulnerability can result in
takeover of Oracle VM VirtualBox.

- CVE-2017-3587: Vulnerability in the Oracle VM VirtualBox component of
Oracle Virtualization (subcomponent: Shared Folder). Easily exploitable
vulnerability allows low privileged attacker with logon to the
infrastructure where Oracle VM VirtualBox executes to compromise Oracle
VM VirtualBox. Successful attacks of this vulnerability can result in
unauthorized creation, deletion or modification access to critical data
or all Oracle VM VirtualBox accessible data and unauthorized ability to
cause a hang or frequently repeatable crash (complete DOS) of Oracle VM
VirtualBox.

- CVE-2017-3575: Vulnerability in the Oracle VM VirtualBox component of
Oracle Virtualization (subcomponent: Core). Easily exploitable
vulnerability allows high privileged attacker with logon to the
infrastructure where Oracle VM VirtualBox executes to compromise Oracle
VM VirtualBox. Successful attacks of this vulnerability can result in
unauthorized creation, deletion or modification access to critical data
or all Oracle VM VirtualBox accessible data and unauthorized ability to
cause a hang or frequently repeatable crash (complete DOS) of Oracle VM
VirtualBox.

- CVE-2017-3538: Vulnerability in the Oracle VM VirtualBox component of
Oracle Virtualization (subcomponent: Shared Folder). Difficult to
exploit vulnerabi ...

Description truncated, please see the referenced URL(s) for more information.

Affected Software/OS:
virtualbox on openSUSE Leap 42.2

Solution:
Please install the updated package(s).

CVSS Score:
6.3

CVSS Vector:
AV:L/AC:M/Au:N/C:C/I:C/A:N

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-3513
BugTraq ID: 97736
http://www.securityfocus.com/bid/97736
http://www.securitytracker.com/id/1038288
Common Vulnerability Exposure (CVE) ID: CVE-2017-3538
BugTraq ID: 97698
http://www.securityfocus.com/bid/97698
Common Vulnerability Exposure (CVE) ID: CVE-2017-3558
BugTraq ID: 97744
http://www.securityfocus.com/bid/97744
https://www.exploit-db.com/exploits/41904/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3559
BugTraq ID: 97739
http://www.securityfocus.com/bid/97739
Common Vulnerability Exposure (CVE) ID: CVE-2017-3561
BugTraq ID: 97730
http://www.securityfocus.com/bid/97730
https://www.exploit-db.com/exploits/41905/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3563
BugTraq ID: 97732
http://www.securityfocus.com/bid/97732
https://www.exploit-db.com/exploits/41908/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3575
BugTraq ID: 97755
http://www.securityfocus.com/bid/97755
https://www.exploit-db.com/exploits/41906/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3576
BugTraq ID: 97759
http://www.securityfocus.com/bid/97759
https://www.exploit-db.com/exploits/41907/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3587
BugTraq ID: 97750
http://www.securityfocus.com/bid/97750
https://www.exploit-db.com/exploits/41932/
CopyrightCopyright (C) 2017 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.