Summary
This host is installed with Oracle VM VirtualBox and is prone to unspecified vulnerability.
Impact
Successful exploitation will allow local users to affect confidentiality, integrity, and availability via unknown vectors.
Impact Level: Application
Solution
Apply the patch from below link,
http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
Insight
The flaw is due to unspecified error related to the Graphics driver (WDDM) for Linux guests.
Affected
Oracle VM VirtualBox before versions 4.1.34, 4.2.26, and 4.3.12
Detection
Get the installed version of Oracle VM VirtualBox and check the version is vulnerable or not.
References
Severity
Classification
-
CVE CVE-2014-4228 -
CVSS Base Score: 4.4
AV:L/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Asterisk Missing ACL Check Remote Security Bypass Vulnerability
- Apple Safari Secure Cookie Security Bypass Vulnerability (Mac OS X)
- Adobe Flash Player Unspecified Cross-Site Scripting Vulnerability June-2011 (Linux)
- Active Perl CGI.pm 'Set-Cookie' and 'P3P' HTTP Header Injection Vulnerability (Win)
- Adobe LiveCycle Designer Untrusted Search Path Vulnerability (Windows)