Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2017.0135
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2017-0135)
Summary:The remote host is missing an update for the 'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) announced via the MGASA-2017-0135 advisory.
Description:Summary:
The remote host is missing an update for the 'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) announced via the MGASA-2017-0135 advisory.

Vulnerability Insight:
This update provides virtualbox 5.1.22 maintenance release and resolves
at least the following security issues:

A vulnerability in the core subcomponent of virtualbox allows high privilegied
attacker unauthorized read access to a subset of VirtualBox accessible data
(CVE-2017-3513).

A vulnerability in the core subcomponent of virtualbox allows unauthenticated
attacker unauthorized update, insert or delete access to some data as well
as unauthorized read access to a subset of VirtualBox accessible data and
unauthorized ability to cause hang or frequently repeatable crash resulting
in denialv of service (CVE-2017-3558).

Vulnerabilities in the core subcomponent of virtualbox allows unauthenticated
attacker unauthorized update, insert or delete access to some data as well
as unauthorized read access to a subset of VirtualBox accessible data and
unauthorized ability to cause hang or frequently repeatable crash resulting
in denial of service (CVE-2017-3559, CVE-2017-3575).

Vulnerabilities in the core subcomponent of virtualbox allows low privilegied
attacker to fully compromise virtualbox (CVE-2017-3561, CVE-2017-3563,
CVE-2017-3576).

A vulnerability in the Shared Folder subcomponent of virtualbox allows high
privileged attacker unauthorized creation, deletion or modification access
to critical data, unauthorized access to critical data to all virtualbox
accessible data and unauthorized ability to cause a hang or frequently
repeatable crash (CVE-2017-3587).

For other fixes in this update, see the referenced changelog.

Affected Software/OS:
'kmod-vboxadditions, kmod-virtualbox, virtualbox' package(s) on Mageia 5.

Solution:
Please install the updated package(s).

CVSS Score:
4.6

CVSS Vector:
AV:L/AC:L/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-3513
BugTraq ID: 97736
http://www.securityfocus.com/bid/97736
http://www.securitytracker.com/id/1038288
Common Vulnerability Exposure (CVE) ID: CVE-2017-3558
BugTraq ID: 97744
http://www.securityfocus.com/bid/97744
https://www.exploit-db.com/exploits/41904/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3559
BugTraq ID: 97739
http://www.securityfocus.com/bid/97739
Common Vulnerability Exposure (CVE) ID: CVE-2017-3561
BugTraq ID: 97730
http://www.securityfocus.com/bid/97730
https://www.exploit-db.com/exploits/41905/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3563
BugTraq ID: 97732
http://www.securityfocus.com/bid/97732
https://www.exploit-db.com/exploits/41908/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3575
BugTraq ID: 97755
http://www.securityfocus.com/bid/97755
https://www.exploit-db.com/exploits/41906/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3576
BugTraq ID: 97759
http://www.securityfocus.com/bid/97759
https://www.exploit-db.com/exploits/41907/
Common Vulnerability Exposure (CVE) ID: CVE-2017-3587
BugTraq ID: 97750
http://www.securityfocus.com/bid/97750
https://www.exploit-db.com/exploits/41932/
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.