This CPE summary could be partial or incomplete. Please contact us for a detailed listing.
Summary
Detail | |||
---|---|---|---|
Vendor | Virtualox | First view | 2008-11-26 |
Product | Virtualox | Last view | 2008-11-26 |
Version | 1.5.6 | Type | Application |
Update | * | ||
Edition | * | ||
Language | * | ||
Sofware Edition | * | ||
Target Software | * | ||
Target Hardware | * | ||
Other | * | ||
CPE Product | cpe:2.3:a:virtualox:virtualox |
Activity : Overall
Related : CVE
Date | Alert | Description | |
---|---|---|---|
4.4 | 2008-11-26 | CVE-2008-5256 | The AcquireDaemonLock function in ipcdUnix.cpp in Sun Innotek VirtualBox before 2.0.6 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/.vbox-$USER-ipc/lock temporary file. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
100% (1) | CWE-59 | Improper Link Resolution Before File Access ('Link Following') |
Open Source Vulnerability Database (OSVDB)
id | Description |
---|---|
50152 | Sun VirtualBox ipcdUnix.cpp AcquireDaemonLock() Function Temporary File Symli... |
OpenVAS Exploits
id | Description |
---|---|
2009-06-05 | Name : Ubuntu USN-707-1 (cupsys) File : nvt/ubuntu_707_1.nasl |
2009-02-18 | Name : SuSE Security Summary SUSE-SR:2009:004 File : nvt/suse_sr_2009_004.nasl |
2009-01-20 | Name : Mandrake Security Advisory MDVSA-2009:011 (virtualbox) File : nvt/mdksa_2009_011.nasl |
2009-01-20 | Name : Ubuntu USN-708-1 (hplip) File : nvt/ubuntu_708_1.nasl |
2008-12-10 | Name : Sun xVM VirtualBox Insecure Temporary Files Vulnerability (Linux) File : nvt/secpod_virtualbox_acquiredaemonlock_vuln_lin_900408.nasl |
2008-12-10 | Name : Sun xVM VirtualBox Insecure Temporary Files Vulnerability (Win) File : nvt/secpod_virtualbox_acquiredaemonlock_vuln_win_900407.nasl |
Nessus® Vulnerability Scanner
id | Description |
---|---|
2009-07-21 | Name: The remote openSUSE host is missing a security update. File: suse_11_0_virtualbox-090209.nasl - Type: ACT_GATHER_INFO |
2009-04-23 | Name: The remote Mandriva Linux host is missing one or more security updates. File: mandriva_MDVSA-2009-011.nasl - Type: ACT_GATHER_INFO |
2009-02-13 | Name: The remote openSUSE host is missing a security update. File: suse_virtualbox-5990.nasl - Type: ACT_GATHER_INFO |