CVE-2014-2489 — Oracle VM Virtualbox vulnerability
6 documents6 sources
Severity
4.1MEDIUMNVD
EPSS
0.1%
top 73.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 17
Latest updateMay 14
Description
Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 3.2.24, 4.0.26, 4.1.34, 4.2.26, and 4.3.12 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Core.
CVSS vector
AV:L/AC:M/C:P/I:P/A:PExploitability: 2.7 | Impact: 6.4
Affected Packages2 packages
🔴Vulnerability Details
3GHSA▶
GHSA-68vp-967g-wmr4: Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 3↗2022-05-14
OSV▶
CVE-2014-2489: Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 3↗2014-07-17
CVEList▶
CVE-2014-2489: Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 3↗2014-07-17
📋Vendor Advisories
1Debian▶
CVE-2014-2489: virtualbox - Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtua...↗2014