PT-2025-29666 · Oracle+2 · Virtualbox+2

·

CVE-2025-53027

·

Published

2025-06-02

·

Updated

2025-10-01

CVSS v3.1

8.2

High

VectorAV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Oracle VM VirtualBox version 7.1.10
Description An easily exploitable issue exists in the Oracle VM VirtualBox Core component that allows a high-privileged attacker to compromise Oracle VM VirtualBox. Successful attacks can result in a takeover of Oracle VM VirtualBox and may significantly impact additional products.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Improper Privilege Management

Race Condition

Time Of Check To Time Of Use

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-9918
BDU:2025-08588
CVE-2025-53027
ZDI-25-602

Affected Products

Alt Linux
Virtualbox
Red Os