Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2017.0078
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2017-0078)
Zusammenfassung:The remote host is missing an update for the 'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) announced via the MGASA-2017-0078 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) announced via the MGASA-2017-0078 advisory.

Vulnerability Insight:
This update provides virtualbox 5.1.18 maintenance release and resolves
at least the following security issues:

A vulnerability in the GUI subcomponent of virtualbox allows unauthenticated
attacker unauthorized update, insert or delete access to some data as well
as unauthorized read access to a subset of VirtualBox accessible data and
unauthorized ability to cause a partial denial of service (bsc#1020856)
(CVE-2016-5545).

A vulnerability in the Shared Folder subcomponent of virtualbox allows high
privileged attacker unauthorized creation, deletion or modification access
to critical data and unauthorized ability to cause a hang or frequently
repeatable crash (bsc#1020856) (CVE-2017-3290).

A vulnerability in the GUI subcomponent of virtualbox allows high privileged
attacker with network access via multiple protocols to compromise virtualbox
(bsc#1020856) (CVE-2017-3316).

A vulnerability in the SVGA Emulation subcomponent of virtualbox allows low
privileged attacker unauthorized creation, deletion or modification access
to critical data and unauthorized ability to cause a hang or frequently
repeatable crash (bsc#1020856) (CVE-2017-3332).

A vulnerability in the Shared Folder subcomponent of virtualbox allows high
privileged attacker unauthorized creation, deletion or modification access
to critical data and unauthorized access to critical data to all virtualbox
accessible data (CVE-2017-3538).

For other fixes in this update, see the referenced changelog.

Affected Software/OS:
'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) on Mageia 5.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2016-5545
BugTraq ID: 95590
http://www.securityfocus.com/bid/95590
https://security.gentoo.org/glsa/201702-08
http://www.securitytracker.com/id/1037638
Common Vulnerability Exposure (CVE) ID: CVE-2017-3290
BugTraq ID: 95601
http://www.securityfocus.com/bid/95601
Common Vulnerability Exposure (CVE) ID: CVE-2017-3316
BugTraq ID: 95579
http://www.securityfocus.com/bid/95579
https://www.exploit-db.com/exploits/41196/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3332
BugTraq ID: 95599
http://www.securityfocus.com/bid/95599
Common Vulnerability Exposure (CVE) ID: CVE-2017-3538
BugTraq ID: 97698
http://www.securityfocus.com/bid/97698
http://www.securitytracker.com/id/1038288
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.