Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.131105
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2015-0415)
Summary:The remote host is missing an update for the 'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) announced via the MGASA-2015-0415 advisory.
Description:Summary:
The remote host is missing an update for the 'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) announced via the MGASA-2015-0415 advisory.

Vulnerability Insight:
A vulnerability in the Oracle VM VirtualBox component prior to 4.0.34,
4.1.42, 4.2.34, 4.3.32 and 5.0.8. Easily exploitable vulnerability
requiring logon to Operating System. Successful attack of this
vulnerability can result in unauthorized ability to cause a hang or
frequently repeatable crash (complete DOS).
Note: Only Windows guests are impacted, and Windows guests without
VirtualBox Guest Additions installed are not affected (CVE-2015-4813).

A vulnerability in the Oracle VM VirtualBox component prior to 4.0.34,
4.1.42, 4.2.34, 4.3.32 and 5.0.8. Easily exploitable vulnerability allows
successful unauthenticated network attacks. Successful attack of this
vulnerability can result in unauthorized ability to cause a hang or
frequently repeatable crash (complete DOS).
Note: Only VMs with Remote Display feature (RDP) enabled are impacted
(CVE-2015-4896).

For other fixes in this update, see the referenced changelog.

Affected Software/OS:
'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) on Mageia 5.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2015-4813
BugTraq ID: 77185
http://www.securityfocus.com/bid/77185
Debian Security Information: DSA-3384 (Google Search)
http://www.debian.org/security/2015/dsa-3384
http://www.securitytracker.com/id/1033880
SuSE Security Announcement: openSUSE-SU-2015:1855 (Google Search)
http://lists.opensuse.org/opensuse-updates/2015-11/msg00000.html
SuSE Security Announcement: openSUSE-SU-2015:2154 (Google Search)
http://lists.opensuse.org/opensuse-updates/2015-11/msg00172.html
Common Vulnerability Exposure (CVE) ID: CVE-2015-4896
BugTraq ID: 77198
http://www.securityfocus.com/bid/77198
CopyrightCopyright (C) 2015 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.