From b052fbf151106a4f47cac7fdf0ffff983decb773 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Thu, 1 Sep 2022 19:24:10 +0100 Subject: gentoo auto-resync : 01:09:2022 - 19:24:10 --- metadata/glsa/glsa-202208-36.xml | 98 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 98 insertions(+) create mode 100644 metadata/glsa/glsa-202208-36.xml (limited to 'metadata/glsa/glsa-202208-36.xml') diff --git a/metadata/glsa/glsa-202208-36.xml b/metadata/glsa/glsa-202208-36.xml new file mode 100644 index 000000000000..04ca82ecc8a9 --- /dev/null +++ b/metadata/glsa/glsa-202208-36.xml @@ -0,0 +1,98 @@ + + + + Oracle VirtualBox: Multiple Vulnerabilities + Multiple vulnerabilities have been discovered in Oracle Virtualbox, the worst of which could result in root privilege escalation. + virtualbox,virtualbox-additions,virtualbox-extpack-oracle,virtualbox-guest-additions,virtualbox-modules + 2022-08-31 + 2022-08-31 + 785445 + 803134 + 820425 + 831440 + 839990 + 859391 + remote + + + 6.1.36 + 6.1.36 + + + 6.1.36 + 6.1.36 + + + 6.1.36 + 6.1.36 + + + 6.1.36 + 6.1.36 + + + 6.1.36 + 6.1.36 + + + +

VirtualBox is a powerful virtualization product from Oracle.

+
+ +

Multiple vulnerabilities have been discovered in VirtualBox. Please review the CVE identifiers referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All VirtualBox users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=app-emulation/virtualbox-6.1.36" + +
+ + CVE-2021-2145 + CVE-2021-2250 + CVE-2021-2264 + CVE-2021-2266 + CVE-2021-2279 + CVE-2021-2280 + CVE-2021-2281 + CVE-2021-2282 + CVE-2021-2283 + CVE-2021-2284 + CVE-2021-2285 + CVE-2021-2286 + CVE-2021-2287 + CVE-2021-2291 + CVE-2021-2296 + CVE-2021-2297 + CVE-2021-2306 + CVE-2021-2309 + CVE-2021-2310 + CVE-2021-2312 + CVE-2021-2409 + CVE-2021-2442 + CVE-2021-2443 + CVE-2021-2454 + CVE-2021-2475 + CVE-2021-35538 + CVE-2021-35540 + CVE-2021-35542 + CVE-2021-35545 + CVE-2022-21394 + CVE-2022-21465 + CVE-2022-21471 + CVE-2022-21487 + CVE-2022-21488 + CVE-2022-21554 + CVE-2022-21571 + + ajak + sam +
\ No newline at end of file -- cgit v1.2.3