← voltar
CVE-2021-25319

virtualbox: missing sticky bit for /etc/vbox allows local root exploit for members of vboxusers group

CVSS 7.8 HIGHEPSS 0.3%CWE-276
A Incorrect Default Permissions vulnerability in the packaging of virtualbox of openSUSE Factory allows local attackers in the vboxusers groupu to escalate to root. This issue affects: openSUSE Factory virtualbox version 6.1.20-1.1 and prior versions.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Produtos afetados
openSUSE · Factory

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →