Denial of Service Vulnerability in Oracle VM VirtualBox by Oracle
CVE-2026-47041

6MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-47041?

A vulnerability exists in Oracle VM VirtualBox which allows an attacker with high privileges to execute arbitrary actions that can lead to a denial of service. Specifically, this issue affects version 7.2.12 and enables potential disruptions, such as system hangs or crashes, impacting the availability of Oracle VM VirtualBox and possibly influencing other products in the ecosystem. Attackers can exploit this vulnerability if they log in to the infrastructure where Oracle VM VirtualBox operates, highlighting the need for immediate attention and remediation.

Affected Version(s)

Oracle VM VirtualBox 7.2.12

References

CVSS V3.1

Score:
6
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.