Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Kandi Abhishek Reddy

#47834of 56,334
5.5Total CVSS
Vulnerabilities · 1
PT-2025-4255
5.5
2025-01-21
Oracle · Virtualbox · CVE-2025-21533
**Name of the Vulnerable Software and Affected Versions** Oracle VM VirtualBox versions prior to 7.0.24 Oracle VM VirtualBox versions prior to 7.1.6 **Description** A flaw in the Core component of Oracle VM VirtualBox involves authorization mechanism deficiencies and a speculative store bypass. This allows a low-privileged local attacker with access to the infrastructure where the software executes to compromise the system. Exploitation can be achieved via cache-based side-channel attacks, potentially resulting in unauthorized access to critical data or complete access to all data accessible by Oracle VM VirtualBox. **Recommendations** Update to version 7.0.24 or later. Update to version 7.1.6 or later.