Oracle VirtualBox 4.1 < 4.1.22 Task-Gate IDT Call NULL Pointer Dereference Local DoS

Low Nessus Plugin ID 62100


The remote Windows host has an application that is affected by local denial of service vulnerabilities.


The remote host contains a version of Oracle VirtualBox 4.1 before 4.1.22. As such, it is potentially affected by a local denial of service vulnerability caused by invocation of software interrupt 0x8 from userspace. An attacker with access to the guest VM could leverage this to cause a denial of service.


Upgrade to Oracle VirtualBox 4.1.22 / 4.2 or later.

See Also

Plugin Details

Severity: Low

ID: 62100

File Name: virtualbox_4_1_22.nasl

Version: $Revision: 1.6 $

Type: local

Agent: windows

Family: Windows

Published: 2012/09/14

Modified: 2014/08/20

Dependencies: 40548

Risk Information

Risk Factor: Low


Base Score: 2.1

Temporal Score: 1.7

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:P

Temporal Vector: CVSS2#E:F/RL:OF/RC:ND

Vulnerability Information

CPE: cpe:/a:oracle:vm_virtualbox

Required KB Items: VirtualBox/Version

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2012/09/07

Vulnerability Publication Date: 2012/09/07

Reference Information

CVE: CVE-2012-3221

BID: 55471, 56045

OSVDB: 86384