Comment 0 for bug 2017101

Revision history for this message
Gianfranco Costamagna (costamagnagianfranco) wrote : [SRU] virtualbox

Sync vbox from Debian, fixing CVES

CVE-2023-21990 Oracle VM VirtualBox Core None No 8.2 Local Low High None Changed High High High Prior to 6.1.44, Prior to 7.0.8
CVE-2023-21987 Oracle VM VirtualBox Core None No 7.8 Local High Low None Changed High High High Prior to 6.1.44, Prior to 7.0.8
CVE-2022-42916 Oracle VM VirtualBox Core (cURL) HTTP Yes 7.5 Network Low None None Un-
changed High None None Prior to 6.1.44, Prior to 7.0.8
CVE-2023-22002 Oracle VM VirtualBox Core None No 6.0 Local Low High None Changed High None None Prior to 6.1.44, Prior to 7.0.8
CVE-2023-21989 Oracle VM VirtualBox Core None No 6.0 Local Low High None Changed High None None Prior to 6.1.44, Prior to 7.0.8
CVE-2023-21998 Oracle VM VirtualBox Core None No 4.6 Local Low High None Changed Low Low None Prior to 6.1.44, Prior to 7.0.8 See Note 1
CVE-2023-22000 Oracle VM VirtualBox Core None No 4.6 Local Low High None Changed Low Low None Prior to 6.1.44, Prior to 7.0.8
CVE-2023-22001 Oracle VM VirtualBox Core None No 4.6 Local Low High None Changed Low Low None Prior to 6.1.44, Prior to 7.0.8
CVE-2023-21988 Oracle VM VirtualBox Core None No 3.8 Local Low Low None Changed Low None None Prior to 6.1.44, Prior to 7.0.8
CVE-2023-21999 Oracle VM VirtualBox Core None No 3.6 Local High Low None Un-
changed Low Low None Prior to 6.1.44, Prior to 7.0.8
CVE-2023-21991 Oracle VM VirtualBox Core None No 3.2 Local Low High None Changed Low None None Prior to 6.1.44, Prior to 7.0.8