CVE-2009-3692: High severity oracle virtualbox vulnerability
Published Oct 13, 2009
·Updated
Unspecified vulnerability in the VBoxNetAdpCtl configuration tool in Sun VirtualBox 3.0.x before 3.0.8 on Solaris x86, Linux, and Mac OS X allows local users to gain privileges via unknown vectors.
Affected Software
16 affected components
Sun VirtualBox=3.0.0
Sun VirtualBox=3.0.2
Sun VirtualBox=3.0.4
Sun VirtualBox=3.0.6
Apple iOS and macOS
Linux Linux
Sun OpenSolaris
Sun Solaris
All of the following
Any of the following
Sun VirtualBox=3.0.0
Sun VirtualBox=3.0.2
Sun VirtualBox=3.0.4
Sun VirtualBox=3.0.6
Any of the following
Apple iOS and macOS
Linux Linux kernel
Sun OpenSolaris
Sun Solaris
Remediation
Event History
Oct 13, 2009
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
10:30 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-3692?
The severity of CVE-2009-3692 is unspecified, but it allows local users to gain privileges.
2
How do I fix CVE-2009-3692?
To fix CVE-2009-3692, upgrade to Sun VirtualBox version 3.0.8 or later.
3
Which versions of VirtualBox are affected by CVE-2009-3692?
CVE-2009-3692 affects Sun VirtualBox versions 3.0.0, 3.0.2, 3.0.4, and 3.0.6.
4
Can CVE-2009-3692 be exploited on macOS?
CVE-2009-3692 specifically targets Sun VirtualBox and does not affect macOS versions directly.
5
What is the impact of CVE-2009-3692 on users?
Users affected by CVE-2009-3692 may be vulnerable to privilege escalation attacks.