First published: Fri Aug 07 2009(Updated: )
Sun VirtualBox 2.2 through 3.0.2 r49928 allows guest OS users to cause a denial of service (Linux host OS reboot) via a sysenter instruction.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle VM VirtualBox | =3.0.2-r49928 | |
Oracle VM VirtualBox | =2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2715 is classified as a denial of service vulnerability with moderate severity.
To mitigate CVE-2009-2715, upgrade Sun VirtualBox to version 3.0.4 or later.
CVE-2009-2715 affects Sun VirtualBox versions 2.2 and 3.0.2 r49928.
CVE-2009-2715 allows guest OS users to execute a denial of service attack that can reboot the Linux host OS.
Exploitation of CVE-2009-2715 requires access to the guest OS, which may limit its impact but can still lead to system downtime.