CVE-2024-21263
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Summary
CVE-2024-21263 is a vulnerability identified in Oracle VM VirtualBox that affects versions prior to 7.0.22 and 7.1.2. This vulnerability allows a low-privileged attacker with access to the infrastructure where Oracle VM VirtualBox operates to potentially cause denial of service (DoS) by crashing the application or accessing a limited set of data without authorization. The CVSS 3.1 score for this vulnerability is 6.1, indicating medium severity with high availability impact and low confidentiality impact. To remediate this issue, organizations should update their Oracle VM VirtualBox to the latest versions available, specifically 7.0.22 or 7.1.2 and later, as recommended by Oracle's security alerts. Failure to address this vulnerability could lead to significant disruptions in service and unauthorized data exposure within the virtualized environment.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.