CVE-2015-4896Oracle VM Virtualbox vulnerability

5 documents5 sources
Severity
5.0MEDIUMNVD
EPSS
1.5%
top 18.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 21
Latest updateMay 14

Description

Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 4.0.34, 4.1.42, 4.2.34, 4.3.32, and 5.0.8, when a VM has the Remote Display feature (RDP) enabled, allows remote attackers to affect availability via unknown vectors related to Core.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

NVDoracle/vm_virtualbox4.0.04.0.34+4
Ubuntusun/virtualbox< 4.3.34-dfsg-1+deb8u1ubuntu1.14.04.1

Also affects: Debian Linux 7.0, 8.0, 9.0

Patches

🔴Vulnerability Details

3
GHSA
GHSA-jjhg-cr8w-r8h7: Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 42022-05-14
OSV
CVE-2015-4896: Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 42015-10-21
CVEList
CVE-2015-4896: Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 42015-10-21

📋Vendor Advisories

1
Debian
CVE-2015-4896: virtualbox - Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtua...2015
CVE-2015-4896 — Oracle VM Virtualbox vulnerability | cvebase