Database/Kernel, userspace & hypervisor
Oracle VirtualBox: Easily exploitable Core flaw allowing unauthorised access to VirtualBox-accessible data
CVSS 6.5CVE-2024-21121Kernel, userspace & hypervisorcurated
Impact
Easily exploitable Core flaw allowing unauthorised access to VirtualBox-accessible data
Who can reach it
Tenant VM guest
What to do
VirtualBox update + VM restart
References
Related entries
- Oracle VirtualBox: Core component flaw allowing a low-privileged guest user to take over the host VirtualBoxCVE-2023-21987 · Oracle VirtualBoxHigh
- Intel ice driver (Ethernet 800 Series, Linux kernel mode): A protection-mechanism failure in the E810 Linux kernelCVE-2024-23499 · Intel ice driver (Ethernet 800 Series, Linux kernel mode)Medium
- Linux kernel SMC-D diagnostics (smc_diag, rmb_desc access during connection dump): Dumping SMC-D connections whileCVE-2024-26615 · Linux kernel SMC-D diagnostics (smc_diag, rmb_desc access during connection dump)Medium
- Linux kernel (netfilter): nft_chain_filter NETDEV_UNREGISTER mishandling for inet/ingress basechains - UAFCVE-2024-26808 · Linux kernel (netfilter)Medium
- Linux kernel (drivers/iommu/intel): The whole node hangs. VT-d keeps re-issuing an ATS device-TLB invalidation to aCVE-2024-26891 · Linux kernel (drivers/iommu/intel)Medium
- Linux kernel (drivers/iommu/iommufd): The cache-invalidation ioctl calls a driver operation that may not exist, jumpingCVE-2024-46824 · Linux kernel (drivers/iommu/iommufd)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.