FreeBSD : virtualbox -- privilege escalation (ebeed063-b328-11de-b6a5-0030843d3802)

This script is Copyright (C) 2009-2013 Tenable Network Security, Inc.


Synopsis :

The remote FreeBSD host is missing a security-related update.

Description :

Sun reports :

A security vulnerability in the VBoxNetAdpCtl configuration tool for
certain Sun VirtualBox 3.0 packages may allow local unprivileged users
who are authorized to run VirtualBox to execute arbitrary commands
with root privileges.

See also :

http://sunsolve.sun.com/search/document.do?assetkey=1-66-268188-1
http://www.nessus.org/u?c1240390

Solution :

Update the affected package.

Risk factor :

High / CVSS Base Score : 7.2
(CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C)

Family: FreeBSD Local Security Checks

Nessus Plugin ID: 42060 (freebsd_pkg_ebeed063b32811deb6a50030843d3802.nasl)

Bugtraq ID:

CVE ID: CVE-2009-3692

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now