CVE-2023-21987
HIGHOracle VM VirtualBox <6.1.44-7.0.8 - Privilege Escalation
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2023-21987. PoCs published by chunzhennn, minq0x1412.
AI-analyzed exploit summary This PoC demonstrates an out-of-bounds (OOB) read vulnerability in Oracle VirtualBox's VGA implementation (CVE-2023-21987), allowing address leakage of VirtualBox components. It uses DMA and VGA register manipulation to exploit the flaw, with a low success rate noted.
Description
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H).
Exploits (2)
This PoC demonstrates an out-of-bounds (OOB) read vulnerability in Oracle VirtualBox's VGA implementation (CVE-2023-21987), allowing address leakage of VirtualBox components. It uses DMA and VGA register manipulation to exploit the flaw, with a low success rate noted.
This repository contains a functional Linux kernel module exploit for CVE-2023-21987, targeting VirtualBox's VMSVGA emulation. The exploit leverages out-of-bounds (OOB) read/write primitives via VGA and TPM MMIO to achieve arbitrary code execution in the host context.
References (1)
Scores
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H