2.4
CVSSv2

CVE-2013-0420

Published: 17/01/2013 Updated: 30/10/2018
CVSS v2 Base Score: 2.4 | Impact Score: 4.9 | Exploitability Score: 1.5
VMScore: 214
Vector: AV:L/AC:H/Au:S/C:N/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in the VirtualBox component in Oracle Virtualization 4.0, 4.1, and 4.2 allows local users to affect integrity and availability via unknown vectors related to Core. NOTE: The previous information was obtained from the January 2013 Oracle CPU. Oracle has not commented on claims from another vendor that this issue is related to an incorrect comparison in the vga_draw_text function in Devices/Graphics/DevVGA.cpp, which can cause VirtualBox to "draw more lines than necessary."

Vulnerable Product Search on Vulmon Subscribe to Product

opensuse opensuse 12.1

opensuse opensuse 12.2

oracle virtualization 4.0

oracle vm virtualbox 4.0

oracle vm virtualbox 4.1.0

oracle virtualization 4.1

oracle virtualization 4.2

oracle vm virtualbox 4.2.0

Vendor Advisories

Debian Bug report logs - #698292 virtualbox: CVE-2013-0420 Package: virtualbox; Maintainer for virtualbox is Debian Virtualbox Team <team+debian-virtualbox@trackerdebianorg>; Source for virtualbox is src:virtualbox (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Wed, 16 Jan 2013 13:06:0 ...