Bugzilla – Full Text Bug Listing |
Summary: | VUL-0: CVE-2022-21491: virtualbox: Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox | ||
---|---|---|---|
Product: | [openSUSE] openSUSE Distribution | Reporter: | Alexander Bergmann <abergmann> |
Component: | Basesystem | Assignee: | Larry Finger <Larry.Finger> |
Status: | RESOLVED FIXED | QA Contact: | Security Team bot <security-team> |
Severity: | Major | ||
Priority: | P3 - Medium | ||
Version: | Leap 15.3 | ||
Target Milestone: | --- | ||
Hardware: | Other | ||
OS: | Other | ||
URL: | https://smash.suse.de/issue/329597/ | ||
Whiteboard: | |||
Found By: | Security Response Team | Services Priority: | |
Business Priority: | Blocker: | --- | |
Marketing QA Status: | --- | IT Deployment: | --- |
Description
Alexander Bergmann
2022-04-20 07:42:20 UTC
This is an autogenerated message for OBS integration: This bug (1198680) was mentioned in https://build.opensuse.org/request/show/975266 15.3 / virtualbox VB version 6.1.34 fixes this issue and has been submitted to TW, Leap 15.4, Leap 15.3, and Leap 15.2, This is an autogenerated message for OBS integration: This bug (1198680) was mentioned in https://build.opensuse.org/request/show/975277 15.2 / virtualbox openSUSE-SU-2022:0135-1: An update that fixes 32 vulnerabilities is now available. Category: security (important) Bug References: 1064976,1064978,1069412,1099260,1099263,1102912,1121426,1121428,1184522,1192869,1198676,1198677,1198678,1198679,1198680,1198703,951562,970662,970663,991940 CVE References: CVE-2011-5325,CVE-2015-9261,CVE-2016-2147,CVE-2016-2148,CVE-2016-6301,CVE-2017-15873,CVE-2017-15874,CVE-2017-16544,CVE-2018-1000500,CVE-2018-1000517,CVE-2018-20679,CVE-2019-5747,CVE-2021-28831,CVE-2021-42373,CVE-2021-42374,CVE-2021-42375,CVE-2021-42376,CVE-2021-42377,CVE-2021-42378,CVE-2021-42379,CVE-2021-42380,CVE-2021-42381,CVE-2021-42382,CVE-2021-42383,CVE-2021-42384,CVE-2021-42385,CVE-2021-42386,CVE-2022-21465,CVE-2022-21471,CVE-2022-21487,CVE-2022-21488,CVE-2022-21491 JIRA References: Sources used: openSUSE Leap 15.3 (src): busybox-1.34.1-4.9.1, virtualbox-6.1.34-lp153.2.27.2, virtualbox-kmp-6.1.34-lp153.2.27.1 This is an autogenerated message for OBS integration: This bug (1198680) was mentioned in https://build.opensuse.org/request/show/981407 15.4 / virtualbox This is an autogenerated message for OBS integration: This bug (1198680) was mentioned in https://build.opensuse.org/request/show/984619 15.4 / virtualbox This is an autogenerated message for OBS integration: This bug (1198680) was mentioned in https://build.opensuse.org/request/show/990708 15.4 / virtualbox openSUSE-SU-2022:10067-1: An update that solves 7 vulnerabilities and has one errata is now available. Category: security (important) Bug References: 1198676,1198677,1198678,1198679,1198680,1198703,1199803,1201720 CVE References: CVE-2022-21465,CVE-2022-21471,CVE-2022-21487,CVE-2022-21488,CVE-2022-21491,CVE-2022-21554,CVE-2022-21571 JIRA References: Sources used: openSUSE Leap 15.4 (src): virtualbox-6.1.36-lp154.2.7.1, virtualbox-kmp-6.1.36-lp154.2.7.1 |