CVE-2021-2291 – Oracle VirtualBox VGA Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-2291
22 Apr 2021 — An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel. • https://security.gentoo.org/glsa/202208-36 •
CVE-2021-2297 – Oracle VirtualBox LsiLogicSCSI Time-Of-Check Time-Of-Use Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-2297
22 Apr 2021 — An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. • https://security.gentoo.org/glsa/202208-36 •
CVE-2021-2266 – Oracle VirtualBox VMSVGA Numeric Truncation Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-2266
22 Apr 2021 — An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. • https://security.gentoo.org/glsa/202208-36 •
CVE-2021-2310 – Oracle VirtualBox NAT Heap-based Buffer Overflow Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-2310
22 Apr 2021 —  Vector CVSS: (CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H) This vulnerability allows local attackers to escalate privileges on affected installations of Oracle VirtualBox. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the hypervisor. • https://security.gentoo.org/glsa/202208-36 •
CVE-2021-2309 – Oracle VirtualBox VMSVGA Heap-based Buffer Overflow Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-2309
22 Apr 2021 —  Vector CVSS: (CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H) This vulnerability allows local attackers to escalate privileges on affected installations of Oracle VirtualBox. ... An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the hypervisor. • https://security.gentoo.org/glsa/202208-36 •
CVE-2021-2296 – Oracle VirtualBox LsiLogicSCSI Race Condition Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-2296
22 Apr 2021 — An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. • https://security.gentoo.org/glsa/202208-36 •
CVE-2021-2145 – Oracle VirtualBox NAT Integer Underflow Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-2145
22 Apr 2021 —  Vector CVSS: (CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H) This vulnerability allows local attackers to escalate privileges on affected installations of Oracle VirtualBox. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the hypervisor. • https://security.gentoo.org/glsa/202208-36 •
CVE-2021-31423 – Parallels Desktop Toolgate Uninitialized Memory Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-31423
21 Apr 2021 — An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. ... An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. • https://kb.parallels.com/en/125013 • CWE-908: Use of Uninitialized Resource •
CVE-2021-1076 – Gentoo Linux Security Advisory 202310-02
https://notcve.org/view.php?id=CVE-2021-1076
21 Apr 2021 — A local attacker could use this issue to cause a denial of service, expose sensitive information, or escalate privileges. • https://lists.debian.org/debian-lts-announce/2022/01/msg00013.html •
CVE-2021-31432 – Parallels Desktop IDE Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-31432
21 Apr 2021 — An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. ... An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. • https://kb.parallels.com/en/125013 • CWE-125: Out-of-bounds Read •