The Vigil@nce team watches public vulnerabilities impacting your computers, and then offers security solutions, a vigilance database and tools to fix them.

Computer vulnerabilities of Oracle VM VirtualBox

OpenSSL: information disclosure via ChaCha20-Poly1305 Long Nonces
An attacker can bypass access restrictions to data via ChaCha20-Poly1305 Long Nonces of OpenSSL, in order to obtain sensitive information...
cpujul2019, CVE-2019-1543, DSA-4475-1, ibm10967487, openSUSE-SU-2019:1147-1, openSUSE-SU-2019:1814-1, RHSA-2019:3700-01, SUSE-SU-2019:0678-1, SUSE-SU-2019:0787-1, VIGILANCE-VUL-28682
Oracle VM VirtualBox: vulnerabilities of January 2019
Several vulnerabilities were announced in Oracle products...
CERTFR-2019-AVI-024, cpujan2019, CVE-2018-3309, CVE-2019-2446, CVE-2019-2448, CVE-2019-2450, CVE-2019-2451, CVE-2019-2500, CVE-2019-2501, CVE-2019-2504, CVE-2019-2505, CVE-2019-2506, CVE-2019-2508, CVE-2019-2509, CVE-2019-2511, CVE-2019-2520, CVE-2019-2521, CVE-2019-2522, CVE-2019-2523, CVE-2019-2524, CVE-2019-2525, CVE-2019-2526, CVE-2019-2527, CVE-2019-2548, CVE-2019-2552, CVE-2019-2553, CVE-2019-2554, CVE-2019-2555, CVE-2019-2556, FG-VD-18-162, openSUSE-SU-2019:0084-1, openSUSE-SU-2019:1547-1, openSUSE-SU-2019:1814-1, VIGILANCE-VUL-28293, ZDI-19-034, ZDI-19-035, ZDI-19-036, ZDI-19-037, ZDI-19-038, ZDI-19-040, ZDI-19-041, ZDI-19-042, ZDI-19-043, ZDI-19-044, ZDI-19-045, ZDI-19-046, ZDI-19-047, ZDI-19-048, ZDI-19-049, ZDI-19-050, ZDI-19-051, ZDI-19-052, ZDI-19-053
VirtualBox: privilege escalation via DevE1000-e1kXmitPending
An attacker, inside a guest system, can bypass restrictions via DevE1000::e1kXmitPending() of VirtualBox, in order to escalate his privileges on the host system...
12, openSUSE-SU-2018:3876-1, VIGILANCE-VUL-27725
Oracle VM VirtualBox: vulnerabilities of October 2018
Several vulnerabilities were announced in Oracle products...
CERTFR-2018-AVI-497, cpuoct2018, CVE-2018-2909, CVE-2018-3287, CVE-2018-3288, CVE-2018-3289, CVE-2018-3290, CVE-2018-3291, CVE-2018-3292, CVE-2018-3293, CVE-2018-3294, CVE-2018-3295, CVE-2018-3296, CVE-2018-3297, CVE-2018-3298, openSUSE-SU-2019:1814-1, VIGILANCE-VUL-27512, ZDI-18-1264, ZDI-18-1265, ZDI-18-1266, ZDI-18-1267, ZDI-18-1268, ZDI-18-1269, ZDI-18-1270, ZDI-18-1271, ZDI-18-1272, ZDI-18-1274, ZDI-18-1275, ZDI-18-1276, ZDI-18-1277, ZDI-18-1278, ZDI-18-1292, ZDI-18-1447, ZDI-18-1448, ZDI-18-1449
Oracle VM VirtualBox: vulnerabilities of July 2018
Several vulnerabilities were announced in Oracle products...
CERTFR-2018-AVI-351, cpujul2018, CVE-2018-3005, CVE-2018-3055, CVE-2018-3085, CVE-2018-3086, CVE-2018-3087, CVE-2018-3088, CVE-2018-3089, CVE-2018-3090, CVE-2018-3091, openSUSE-SU-2018:2295-1, openSUSE-SU-2018:2524-1, VIGILANCE-VUL-26770, ZDI-18-684, ZDI-18-685, ZDI-18-686, ZDI-18-687, ZDI-18-688, ZDI-18-689, ZDI-18-690, ZDI-18-691
OpenSSL: denial of service via Large DH Parameter
An attacker can generate a fatal error via Large DH Parameter of OpenSSL, in order to trigger a denial of service...
bulletinjul2018, CERTFR-2018-AVI-511, CERTFR-2018-AVI-607, cpuapr2019, cpuapr2020, cpujan2019, cpujul2019, cpuoct2018, CVE-2018-0732, DLA-1449-1, DSA-2019-197, DSA-2020-030, DSA-2020-062, DSA-4348-1, DSA-4355-1, FEDORA-2019-00c25b9379, ibm10719319, ibm10729805, ibm10738401, ibm10743283, ibm10874728, JSA10919, JSA10990, K21665601, openSUSE-SU-2018:1906-1, openSUSE-SU-2018:2117-1, openSUSE-SU-2018:2129-1, openSUSE-SU-2018:2667-1, openSUSE-SU-2018:2695-1, openSUSE-SU-2018:2816-1, openSUSE-SU-2018:2855-1, openSUSE-SU-2018:3013-1, openSUSE-SU-2018:3015-1, PAN-SA-2018-0015, RHSA-2018:3221-01, SA44073-2019-03, SSA:2018-226-01, SUSE-SU-2018:1887-1, SUSE-SU-2018:1968-1, SUSE-SU-2018:2036-1, SUSE-SU-2018:2041-1, SUSE-SU-2018:2207-1, SUSE-SU-2018:2647-1, SUSE-SU-2018:2683-1, SUSE-SU-2018:2812-1, SUSE-SU-2018:2956-1, SUSE-SU-2018:2965-1, SUSE-SU-2019:14246-1, SUSE-SU-2019:1553-1, SYMSA1462, TNS-2018-14, TNS-2018-17, TSB17568, USN-3692-1, USN-3692-2, VIGILANCE-VUL-26375
Oracle VM VirtualBox: vulnerabilities of April 2018
Several vulnerabilities were announced in Oracle products...
CERTFR-2018-AVI-190, cpuapr2018, CVE-2018-2830, CVE-2018-2831, CVE-2018-2835, CVE-2018-2836, CVE-2018-2837, CVE-2018-2842, CVE-2018-2843, CVE-2018-2844, CVE-2018-2845, CVE-2018-2860, openSUSE-SU-2018:1057-1, openSUSE-SU-2018:2524-1, VIGILANCE-VUL-25902, ZDI-18-302, ZDI-18-303, ZDI-18-304, ZDI-18-305
OpenSSL: information disclosure via RSA Constant Time Key Generation
An attacker can bypass access restrictions to data via RSA Constant Time Key Generation of OpenSSL, in order to obtain sensitive information...
bulletinjul2018, CERTFR-2018-AVI-511, CERTFR-2018-AVI-607, cpuapr2019, cpuapr2020, cpujan2019, cpujul2019, cpuoct2018, CVE-2018-0737, DLA-1449-1, DSA-2020-030, DSA-4348-1, DSA-4355-1, FEDORA-2019-00c25b9379, ibm10729805, ibm10743283, ibm10880781, JSA10919, JSA10990, openSUSE-SU-2018:2695-1, openSUSE-SU-2018:2957-1, openSUSE-SU-2018:3015-1, openSUSE-SU-2019:0152-1, openSUSE-SU-2019:1432-1, PAN-SA-2018-0015, RHSA-2018:3221-01, SA44073-2019-03, SSA:2018-226-01, SUSE-SU-2018:2486-1, SUSE-SU-2018:2492-1, SUSE-SU-2018:2683-1, SUSE-SU-2018:2928-1, SUSE-SU-2018:2965-1, SUSE-SU-2018:3864-1, SUSE-SU-2018:3864-2, SUSE-SU-2019:0197-1, SUSE-SU-2019:0512-1, SUSE-SU-2019:1553-1, TNS-2018-14, TNS-2018-17, TSB17568, USN-3628-1, USN-3628-2, USN-3692-1, USN-3692-2, VIGILANCE-VUL-25884
Oracle VM VirtualBox: vulnerabilities of January 2018
Several vulnerabilities were announced in Oracle products...
CERTFR-2018-AVI-039, cpujan2018, CVE-2018-2676, CVE-2018-2685, CVE-2018-2686, CVE-2018-2687, CVE-2018-2688, CVE-2018-2689, CVE-2018-2690, CVE-2018-2693, CVE-2018-2694, CVE-2018-2698, openSUSE-SU-2018:0187-1, openSUSE-SU-2018:2524-1, VIGILANCE-VUL-25085, WLB-2018010260, ZDI-18-117, ZDI-18-118, ZDI-18-119, ZDI-18-120, ZDI-18-121, ZDI-18-122
OpenSSL: information disclosure via rsaz_1024_mul_avx2
An attacker can bypass access restrictions to data via rsaz_1024_mul_avx2() of OpenSSL, in order to obtain sensitive information...
2014324, bulletinapr2018, bulletinjan2018, CERTFR-2017-AVI-452, CERTFR-2018-AVI-155, cpuapr2018, cpuapr2019, cpujan2018, cpujan2019, cpujul2018, cpujul2019, cpuoct2018, CVE-2017-3738, DSA-2020-062, DSA-4065-1, DSA-4157-1, FEDORA-2017-e6be32cb7a, FreeBSD-SA-17:12.openssl, ibm10716907, ibm10717405, ibm10717409, ibm10719113, JSA10851, openSUSE-SU-2017:3345-1, openSUSE-SU-2018:0029-1, openSUSE-SU-2018:0315-1, RHSA-2018:0998-01, SA159, SSA:2017-342-01, SUSE-SU-2019:14246-1, swg21647054, USN-3512-1, VIGILANCE-VUL-24698
Our database contains other pages. You can request a free trial to read them.

Display information about Oracle VM VirtualBox: