cbcvebase.
CVE-2015-2594
published 2015-07-16

CVE-2015-2594: Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox prior to 4.0.32, 4.1.40, 4.2.32, and 4.3.30 allows local…

medium6.6CVSS 3.1
AVLACMAuSCCICAC
Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox prior to 4.0.32, 4.1.40, 4.2.32, and 4.3.30 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Core.

Affected

9 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianvirtualbox< virtualbox 4.3.30-dfsg-1 (sid)virtualbox 4.3.30-dfsg-1 (sid)
oraclevm_virtualbox>= 4.0.0 < 4.0.324.0.32
oraclevm_virtualbox>= 4.1.0 < 4.1.404.1.40
oraclevm_virtualbox>= 4.2.0 < 4.2.324.2.32
oraclevm_virtualbox>= 4.3.0 < 4.3.304.3.30
sunvirtualbox>= 0 < 4.3.34-dfsg-1+deb8u1ubuntu1.14.04.14.3.34-dfsg-1+deb8u1ubuntu1.14.04.1

CVSS provenance

nvd6.6MEDIUMAV:L/AC:M/Au:S/C:C/I:C/A:C
osv6.6MEDIUM