CVE-2014-2486: Low severity oracle virtualbox vulnerability
Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 3.2.24, 4.0.26, 4.1.34, 4.2.26, and 4.3.12 allows local users to affect integrity and availability via unknown vectors related to Core, a different vulnerability than CVE-2014-2477.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2486?
CVE-2014-2486 is considered to have a medium severity level due to its potential impact on integrity and availability.
How do I fix CVE-2014-2486?
To fix CVE-2014-2486, update Oracle VM VirtualBox to version 4.3.12 or later, or apply the relevant patches provided by Oracle.
What versions of Oracle VM VirtualBox are affected by CVE-2014-2486?
CVE-2014-2486 affects Oracle VM VirtualBox versions prior to 3.2.24, 4.0.26, 4.1.34, 4.2.26, and 4.3.12.
Can CVE-2014-2486 be exploited remotely?
CVE-2014-2486 is a local vulnerability and cannot be exploited remotely; it requires local user access.
What types of attacks can CVE-2014-2486 facilitate?
CVE-2014-2486 can facilitate attacks that affect the integrity and availability of the affected VirtualBox installation.