cbcvebase.

Debian Virtualbox vulnerabilities

389 known vulnerabilities affecting debian/virtualbox.

Total CVEs
389
CISA KEV
0
Public exploits
20
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH191MEDIUM149LOW46

Vulnerabilities

Page 9 of 20
CVE-2019-2864P4HIGHCVSS 7.5fixed in virtualbox 6.0.10-dfsg-1 (sid)2019
CVE-2019-2864 [HIGH] CVE-2019-2864: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
debian
CVE-2019-2865P4HIGHCVSS 7.5fixed in virtualbox 6.0.10-dfsg-1 (sid)2019
CVE-2019-2865 [HIGH] CVE-2019-2865: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
debian
CVE-2020-2698P4HIGHCVSS 7.5fixed in virtualbox 6.1.2-dfsg-1 (sid)2020
CVE-2020-2698 [HIGH] CVE-2020-2698: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While t
debian
CVE-2020-2702P4HIGHCVSS 7.5fixed in virtualbox 6.1.2-dfsg-1 (sid)2020
CVE-2020-2702 [HIGH] CVE-2020-2702: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While t
debian
CVE-2020-2726P4HIGHCVSS 7.5fixed in virtualbox 6.1.2-dfsg-1 (sid)2020
CVE-2020-2726 [HIGH] CVE-2020-2726: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While t
debian
CVE-2020-2958P4HIGHCVSS 7.5fixed in virtualbox 6.1.6-dfsg-1 (sid)2020
CVE-2020-2958 [HIGH] CVE-2020-2958: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While t
debian
CVE-2019-2679P4HIGHCVSS 7.3fixed in virtualbox 6.0.6-dfsg-1 (sid)2019
CVE-2019-2679 [HIGH] CVE-2019-2679: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.28 and prior to 6.0.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabilit
debian
CVE-2025-21571P4HIGHCVSS 7.3fixed in virtualbox 7.0.26-dfsg-1 (sid)2025
CVE-2025-21571 [HIGH] CVE-2025-21571: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.24 and prior to 7.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability
debian
CVE-2024-21109P4MEDIUMCVSS 5.9fixed in virtualbox 7.0.16-dfsg-1 (sid)2024
CVE-2024-21109 [MEDIUM] CVE-2024-21109: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauthorized access to c
debian
CVE-2016-5545P4MEDIUMCVSS 6.3fixed in virtualbox 5.1.14-dfsg-1 (sid)2016
CVE-2016-5545 [MEDIUM] CVE-2016-5545: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: GUI). Supported versions that are affected are VirtualBox prior to 5.0.32 and prior to 5.1.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle VM VirtualBox. Successful attacks require human interaction fro
debian
CVE-2013-3792P4LOWCVSS 3.8PoCfixed in virtualbox 4.2.16-dfsg-1 (sid)2013
CVE-2013-3792 [LOW] CVE-2013-3792: virtualbox - Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtua... Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox prior to 3.2.18, 4.0.20, 4.1.28, and 4.2.18 allows local users to affect availability via unknown vectors related to Core. Scope: local sid: resolved (fixed in 4.2.16-dfsg-1)
debian
CVE-2017-3290P4HIGHCVSS 7.9fixed in virtualbox 5.1.14-dfsg-1 (sid)2017
CVE-2017-3290 [HIGH] CVE-2017-3290: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Shared Folder). Supported versions that are affected are VirtualBox prior to 5.0.32 and prior to 5.1.14. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox.
debian
CVE-2017-10233P4HIGHCVSS 7.3fixed in virtualbox 5.1.24-dfsg-1 (sid)2017
CVE-2017-10233 [HIGH] CVE-2017-10233: virtualbox - Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (su... Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.1.24. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle V
debian
CVE-2020-2914P4HIGHCVSS 7.0fixed in virtualbox 6.1.6-dfsg-1 (sid)2020
CVE-2020-2914 [HIGH] CVE-2020-2914: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of thi
debian
CVE-2020-2913P4HIGHCVSS 7.0fixed in virtualbox 6.1.6-dfsg-1 (sid)2020
CVE-2020-2913 [HIGH] CVE-2020-2913: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of thi
debian
CVE-2021-2454P4HIGHCVSS 7.0fixed in virtualbox 6.1.26-dfsg-1 (sid)2021
CVE-2021-2454 [HIGH] CVE-2021-2454: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.24. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability ca
debian
CVE-2016-3612P4MEDIUMCVSS 5.9fixed in virtualbox 5.0.22-dfsg-1 (sid)2016
CVE-2016-3612 [MEDIUM] CVE-2016-3612: virtualbox - Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtua... Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 5.0.22 allows remote attackers to affect confidentiality via vectors related to Core. Scope: local sid: resolved (fixed in 5.0.22-dfsg-1)
debian
CVE-2025-61759P4MEDIUMCVSS 6.5fixed in virtualbox 7.2.4-dfsg-1 (sid)2025
CVE-2025-61759 [MEDIUM] CVE-2025-61759: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.12 and 7.2.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM V
debian
CVE-2026-21982P4HIGHCVSS 7.5fixed in virtualbox 7.2.6-dfsg-1 (sid)2026
CVE-2026-21982 [HIGH] CVE-2026-21982: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Difficult to exploit vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the Oracle VM VirtualBox executes to compromise Oracle VM Virtua
debian
CVE-2019-2944P4HIGHCVSS 7.3fixed in virtualbox 6.0.14-dfsg-1 (sid)2019
CVE-2019-2944 [HIGH] CVE-2019-2944: virtualbox - Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (comp... Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability i
debian
Debian Virtualbox vulnerabilities | cvebase