← Back to browse · API

CVE-2008-3431

Severity
HIGH
CVSS
8.8
EPSS
0.06932
Risk score
62.63
CISA KEV
Yes
PoC
No
Published
2008-08-05
Modified
2025-10-22
First seen
2026-08-07
Aliases
EUVD-2008-3417, GHSA-PXP3-358M-6VFM
Products
Oracle:VirtualBox, n/a:n/a n/a
Sources
cisa.gov CVE-2008-3431
euvd EUVD-2008-3417

Description

The VBoxDrvNtDeviceControl function in VBoxDrv.sys in Sun xVM VirtualBox before 1.6.4 uses the METHOD_NEITHER communication method for IOCTLs and does not properly validate a buffer associated with the Irp object, which allows local users to gain privileges by opening the \\.\VBoxDrv device and calling DeviceIoControl to send a crafted kernel address.

References