CVE-2018-2844

HIGH

Oracle VM VirtualBox <5.1.36-5.2.10 - RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2018-2844. PoCs published by renorobert.

AI-analyzed exploit summary This is a functional exploit for CVE-2018-2844, targeting a vulnerability in VirtualBox's VRAM handling. It leverages a race condition to achieve arbitrary code execution in the host system from a guest VM, using a connect-back shellcode.

Description

Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.1.36 and Prior to 5.2.10. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H).

Exploits (1)

nomisec WORKING POC 100 stars
by renorobert · poc
https://github.com/renorobert/virtualbox-cve-2018-2844

This is a functional exploit for CVE-2018-2844, targeting a vulnerability in VirtualBox's VRAM handling. It leverages a race condition to achieve arbitrary code execution in the host system from a guest VM, using a connect-back shellcode.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Complex
Reliability
Racy
Target: Oracle VirtualBox (versions prior to fix for CVE-2018-2844)
No auth needed
Prerequisites: Root access in the guest VM · VirtualBox with vulnerable version · Blacklisted vboxvideo driver
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry
http://www.securityfocus.com/bid/103855
Third Party Advisory vendor-advisory
https://security.gentoo.org/glsa/201805-08
Third Party Advisory, VDB Entry vdb-entry
http://www.securitytracker.com/id/1040707

Scores

CVSS v3 8.8
EPSS 0.0106
EPSS Percentile 60.2%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

Status published
Products (1)
oracle/vm_virtualbox 5.1.0 - 5.1.36
Published Apr 19, 2018
Tracked Since Feb 18, 2026