Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2017.0135
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2017-0135)
Resumen:The remote host is missing an update for the 'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) announced via the MGASA-2017-0135 advisory.
Descripción:Summary:
The remote host is missing an update for the 'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) announced via the MGASA-2017-0135 advisory.

Vulnerability Insight:
This update provides virtualbox 5.1.22 maintenance release and resolves
at least the following security issues:

A vulnerability in the core subcomponent of virtualbox allows high privilegied
attacker unauthorized read access to a subset of VirtualBox accessible data
(CVE-2017-3513).

A vulnerability in the core subcomponent of virtualbox allows unauthenticated
attacker unauthorized update, insert or delete access to some data as well
as unauthorized read access to a subset of VirtualBox accessible data and
unauthorized ability to cause hang or frequently repeatable crash resulting
in denialv of service (CVE-2017-3558).

Vulnerabilities in the core subcomponent of virtualbox allows unauthenticated
attacker unauthorized update, insert or delete access to some data as well
as unauthorized read access to a subset of VirtualBox accessible data and
unauthorized ability to cause hang or frequently repeatable crash resulting
in denial of service (CVE-2017-3559, CVE-2017-3575).

Vulnerabilities in the core subcomponent of virtualbox allows low privilegied
attacker to fully compromise virtualbox (CVE-2017-3561, CVE-2017-3563,
CVE-2017-3576).

A vulnerability in the Shared Folder subcomponent of virtualbox allows high
privileged attacker unauthorized creation, deletion or modification access
to critical data, unauthorized access to critical data to all virtualbox
accessible data and unauthorized ability to cause a hang or frequently
repeatable crash (CVE-2017-3587).

For other fixes in this update, see the referenced changelog.

Affected Software/OS:
'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) on Mageia 5.

Solution:
Please install the updated package(s).

CVSS Score:
4.6

CVSS Vector:
AV:L/AC:L/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2017-3513
BugTraq ID: 97736
http://www.securityfocus.com/bid/97736
http://www.securitytracker.com/id/1038288
Common Vulnerability Exposure (CVE) ID: CVE-2017-3558
BugTraq ID: 97744
http://www.securityfocus.com/bid/97744
https://www.exploit-db.com/exploits/41904/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3559
BugTraq ID: 97739
http://www.securityfocus.com/bid/97739
Common Vulnerability Exposure (CVE) ID: CVE-2017-3561
BugTraq ID: 97730
http://www.securityfocus.com/bid/97730
https://www.exploit-db.com/exploits/41905/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3563
BugTraq ID: 97732
http://www.securityfocus.com/bid/97732
https://www.exploit-db.com/exploits/41908/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3575
BugTraq ID: 97755
http://www.securityfocus.com/bid/97755
https://www.exploit-db.com/exploits/41906/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3576
BugTraq ID: 97759
http://www.securityfocus.com/bid/97759
https://www.exploit-db.com/exploits/41907/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3587
BugTraq ID: 97750
http://www.securityfocus.com/bid/97750
https://www.exploit-db.com/exploits/41932/
CopyrightCopyright (C) 2022 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.