QID 377646

Date Published: 2022-10-19

QID 377646: Oracle Managed Virtualization (VM) VirtualBox for Windows Multiple Vulnerabilities (CPUOCT2022)

Oracle VM VirtualBox is an x86 virtualization software package.

Affected Versions:-
Oracle VM VirtualBox for Windows prior to 6.1.40

Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as Medium - 4.6 severity.
  • Solution
    Refer to vendor advisory Oracle VM VirtualBox OCT2022
    Software Advisories
    Advisory ID Software Component Link
    oct2022 URL Logo www.oracle.com/security-alerts/cpuoct2022.html#AppendixOVIR