QID 378434

Date Published: 2023-04-19

QID 378434: Oracle Managed Virtualization (VM) VirtualBox Multiple Vulnerabilities (CPUAPR2023)

Oracle VM VirtualBox is an x86 virtualization software package.

Affected Versions:-
Oracle VM VirtualBox for Windows prior to 6.1.44 and prior to 7.0.8

QID Detection Logic (Authenticated)
QID checks for the Vulnerable version of Oracle VM VirtualBox

Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox.

  • CVSS V3 rated as Critical - 8.2 severity.
  • CVSS V2 rated as Medium - 4.6 severity.
  • Solution
    Refer to vendor advisory Oracle VM VirtualBox APR2023
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    cpuapr2023 URL Logo www.oracle.com/security-alerts/cpuapr2023.html