rpm package
opensuse/virtualbox&distro=openSUSE Leap 15.0
pkg:rpm/opensuse/virtualbox&distro=openSUSE%20Leap%2015.0
Vulnerabilities (67)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2019-2511 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via SOAP to comprom | ||
| CVE-2019-2509 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2019-2508 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2019-2506 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2019-2505 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2019-2504 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2019-2501 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2019-2500 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2019-2451 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2019-2450 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2019-2448 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2019-2446 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O | ||
| CVE-2018-3309 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Jan 16, 2019 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is prior to 5.2.22. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualB | ||
| CVE-2018-0734 | — | < 5.2.24-lp150.4.33.1 | 5.2.24-lp150.4.33.1 | Oct 30, 2018 | The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.1a (Affected 1.1.1). Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fi | ||
| CVE-2018-3298 | — | < 6.0.10-lp151.2.6.1 | 6.0.10-lp151.2.6.1 | Oct 17, 2018 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualB | ||
| CVE-2018-3297 | — | < 6.0.10-lp151.2.6.1 | 6.0.10-lp151.2.6.1 | Oct 17, 2018 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualB | ||
| CVE-2018-3296 | — | < 6.0.10-lp151.2.6.1 | 6.0.10-lp151.2.6.1 | Oct 17, 2018 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualB | ||
| CVE-2018-3295 | — | < 6.0.10-lp151.2.6.1 | 6.0.10-lp151.2.6.1 | Oct 17, 2018 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualB | ||
| CVE-2018-3294 | — | < 6.0.10-lp151.2.6.1 | 6.0.10-lp151.2.6.1 | Oct 17, 2018 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows low privileged attacker with network access via VRDP to compromise Oracle VM Virtu | ||
| CVE-2018-3293 | — | < 6.0.10-lp151.2.6.1 | 6.0.10-lp151.2.6.1 | Oct 17, 2018 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualB |
- CVE-2019-2511Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via SOAP to comprom
- CVE-2019-2509Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2019-2508Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2019-2506Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2019-2505Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2019-2504Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2019-2501Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2019-2500Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2019-2451Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2019-2450Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2019-2448Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2019-2446Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where O
- CVE-2018-3309Jan 16, 2019affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is prior to 5.2.22. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualB
- CVE-2018-0734Oct 30, 2018affected < 5.2.24-lp150.4.33.1fixed 5.2.24-lp150.4.33.1
The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.1a (Affected 1.1.1). Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fi
- CVE-2018-3298Oct 17, 2018affected < 6.0.10-lp151.2.6.1fixed 6.0.10-lp151.2.6.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualB
- CVE-2018-3297Oct 17, 2018affected < 6.0.10-lp151.2.6.1fixed 6.0.10-lp151.2.6.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualB
- CVE-2018-3296Oct 17, 2018affected < 6.0.10-lp151.2.6.1fixed 6.0.10-lp151.2.6.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualB
- CVE-2018-3295Oct 17, 2018affected < 6.0.10-lp151.2.6.1fixed 6.0.10-lp151.2.6.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualB
- CVE-2018-3294Oct 17, 2018affected < 6.0.10-lp151.2.6.1fixed 6.0.10-lp151.2.6.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows low privileged attacker with network access via VRDP to compromise Oracle VM Virtu
- CVE-2018-3293Oct 17, 2018affected < 6.0.10-lp151.2.6.1fixed 6.0.10-lp151.2.6.1
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected is Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle VM VirtualB
Page 3 of 4