#VU78436 Buffer overflow in Oracle VM VirtualBox - CVE-2023-22018
Published: July 19, 2023 / Updated: July 27, 2023
Oracle VM VirtualBox
Oracle
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to improper input validation within the Core component in Oracle VM VirtualBox when handling USB request messages. A remote attacker can trigger memory corruption and execute arbitrary code on the target system in the context of the RDP service.