cbcvebase.

Debian Virtualbox vulnerabilities

389 known vulnerabilities affecting debian/virtualbox.

Total CVEs
389
CISA KEV
0
Public exploits
20
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH191MEDIUM149LOW46

Vulnerabilities

Page 3 of 20
CVE-2022-39427P3HIGHCVSS 8.8fixed in virtualbox 6.1.40-dfsg-1 (sid)2022
CVE-2022-39427 [HIGH] CVE-2022-39427: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.40. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM Virt
debian
CVE-2019-2511P3HIGHCVSS 7.5fixed in virtualbox 5.2.24-dfsg-1 (sid)2019
CVE-2019-2511 [HIGH] CVE-2019-2511: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via SOAP to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauth
debian
CVE-2019-2552P3HIGHCVSS 8.8fixed in virtualbox 5.2.24-dfsg-1 (sid)2019
CVE-2019-2552 [HIGH] CVE-2019-2552: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabilit
debian
CVE-2019-2524P3HIGHCVSS 8.8fixed in virtualbox 5.2.24-dfsg-1 (sid)2019
CVE-2019-2524 [HIGH] CVE-2019-2524: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabilit
debian
CVE-2019-2500P3HIGHCVSS 8.8fixed in virtualbox 5.2.24-dfsg-1 (sid)2019
CVE-2019-2500 [HIGH] CVE-2019-2500: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabilit
debian
CVE-2019-2859P3HIGHCVSS 8.8fixed in virtualbox 6.0.10-dfsg-1 (sid)2019
CVE-2019-2859 [HIGH] CVE-2019-2859: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabili
debian
CVE-2018-2843P3HIGHCVSS 8.8fixed in virtualbox 5.2.10-dfsg-1 (sid)2018
CVE-2018-2843 [HIGH] CVE-2018-2843: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.1.36 and Prior to 5.2.10. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabili
debian
CVE-2018-2842P3HIGHCVSS 8.8fixed in virtualbox 5.2.10-dfsg-1 (sid)2018
CVE-2018-2842 [HIGH] CVE-2018-2842: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.1.36 and Prior to 5.2.10. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabili
debian
CVE-2018-2694P3HIGHCVSS 8.8fixed in virtualbox 5.2.6-dfsg-1 (sid)2018
CVE-2018-2694 [HIGH] CVE-2018-2694: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.1.32 and Prior to 5.2.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabilit
debian
CVE-2021-2264P3HIGHCVSS 8.4fixed in virtualbox 6.1.20-dfsg-1 (sid)2021
CVE-2021-2264 [HIGH] CVE-2021-2264: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.20. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM Virtu
debian
CVE-2015-7183P3HIGHCVSS 7.5fixed in nspr 2:4.10.10-1 (bookworm)2015
CVE-2015-7183 [HIGH] CVE-2015-7183: nspr - Integer overflow in the PL_ARENA_ALLOCATE implementation in Netscape Portable Ru... Integer overflow in the PL_ARENA_ALLOCATE implementation in Netscape Portable Runtime (NSPR) in Mozilla Network Security Services (NSS) before 3.19.2.1 and 3.20.x before 3.20.1, as used in Firefox before 42.0 and Firefox ESR 38.x before 38.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and applicati
debian
CVE-2018-3295P3HIGHCVSS 8.6fixed in virtualbox 5.2.20-dfsg-1 (sid)2018
CVE-2018-3295 [HIGH] CVE-2018-3295: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks require human intera
debian
CVE-2026-21955P3HIGHCVSS 8.2fixed in virtualbox 7.2.6-dfsg-1 (sid)2026
CVE-2026-21955 [HIGH] CVE-2026-21955: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM Vi
debian
CVE-2026-21956P3HIGHCVSS 8.2fixed in virtualbox 7.2.6-dfsg-1 (sid)2026
CVE-2026-21956 [HIGH] CVE-2026-21956: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM Vi
debian
CVE-2024-21116P3HIGHCVSS 7.8fixed in virtualbox 7.0.16-dfsg-1 (sid)2024
CVE-2024-21116 [HIGH] CVE-2024-21116: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can
debian
CVE-2024-21103P3HIGHCVSS 7.8fixed in virtualbox 7.0.16-dfsg-1 (sid)2024
CVE-2024-21103 [HIGH] CVE-2024-21103: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can
debian
CVE-2026-21990P3HIGHCVSS 8.2fixed in virtualbox 7.2.6-dfsg-1 (sid)2026
CVE-2026-21990 [HIGH] CVE-2026-21990: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM Vi
debian
CVE-2026-21988P3HIGHCVSS 8.2fixed in virtualbox 7.2.6-dfsg-1 (sid)2026
CVE-2026-21988 [HIGH] CVE-2026-21988: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM Vi
debian
CVE-2026-21987P3HIGHCVSS 8.2fixed in virtualbox 7.2.6-dfsg-1 (sid)2026
CVE-2026-21987 [HIGH] CVE-2026-21987: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM Vi
debian
CVE-2025-62588P3HIGHCVSS 8.2fixed in virtualbox 7.2.4-dfsg-1 (sid)2025
CVE-2025-62588 [HIGH] CVE-2025-62588: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.12 and 7.2.2. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM Vi
debian
Debian Virtualbox vulnerabilities | cvebase