CVE-2016-5608
Severity CVSS v4.0:
Pending analysis
Type:
CWE-284
Improper Access Control
Publication date:
25/10/2016
Last modified:
12/04/2025
Description
Unspecified vulnerability in the Oracle VM VirtualBox component before 5.0.28 and 5.1.x before 5.1.8 in Oracle Virtualization allows local users to affect availability via vectors related to Core, a different vulnerability than CVE-2016-5613.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Base Score 2.0
2.10
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:oracle:vm_virtualbox:*:*:*:*:*:*:*:* | 5.0.0 (including) | 5.0.28 (excluding) |
| cpe:2.3:a:oracle:vm_virtualbox:*:*:*:*:*:*:*:* | 5.1.0 (including) | 5.1.8 (excluding) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.securityfocus.com/bid/93718
- http://www.securitytracker.com/id/1037053
- https://security.gentoo.org/glsa/201612-27
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.securityfocus.com/bid/93718
- http://www.securitytracker.com/id/1037053
- https://security.gentoo.org/glsa/201612-27



