Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2012-3221

5 documents5 sources
Severity
2.1LOW
EPSS
0.4%
top 39.58%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedOct 17
Latest updateMay 17

Description

Unspecified vulnerability in the Oracle VM Virtual Box component in Oracle Virtualization 3.2, 4.0, and 4.1 allows local users to affect availability via unknown vectors related to VirtualBox Core. NOTE: The previous information was obtained from the October 2012 CPU. Oracle has not commented on claims from another vendor that this issue is related to "incorrect interrupt handling."

CVSS vector

AV:L/AC:L/C:N/I:N/A:PExploitability: 3.9 | Impact: 2.9

Affected Packages1 packages

NVDoracle/virtualization3.2, 4.0, 4.1+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-pxpj-94wm-p9ff: Unspecified vulnerability in the Oracle VM Virtual Box component in Oracle Virtualization 32022-05-17
CVEList
CVE-2012-3221: Unspecified vulnerability in the Oracle VM Virtual Box component in Oracle Virtualization 32012-10-17

💥Exploits & PoCs

1
Exploit-DB
Oracle VM VirtualBox 4.1 - Local Denial of Service2012-09-10

📋Vendor Advisories

1
Debian
CVE-2012-3221: virtualbox - Unspecified vulnerability in the Oracle VM Virtual Box component in Oracle Virtu...2012
CVE-2012-3221 (LOW CVSS 2.1) | Unspecified vulnerability in the Or | cvebase.io