This script is Copyright (C) 2015-2016 Tenable Network Security, Inc.
The remote host has an application that is affected by a remote code
The remote host contains a version of Oracle VM VirtualBox that is
prior to 3.2.28 / 4.0.30 / 4.1.38 / 4.2.30 / 4.3.28. It is, therefore
affected by a flaw in the Floppy Disk Controller (FDC) in the bundled
QEMU software due to an overflow condition in 'hw/block/fdc.c' when
handling certain commands. An attacker, with access to an account on
the guest operating system with privilege to access the FDC, can
exploit this flaw to execute arbitrary code in the context of the
hypervisor process on the host system.
See also :
Upgrade Oracle VM VirtualBox to 3.2.28 / 4.0.30 / 4.1.38 / 4.2.30 /
4.3.28 or later.
Risk factor :
High / CVSS Base Score : 7.7
CVSS Temporal Score : 6.0
Public Exploit Available : true