VirtualBox 6.1.6 release

Oracle has published a corrective release of the virtualization system VirtualBox 6.1.6, in which it is noted 9 fixes. Corrective releases of VirtualBox 6.0.20 and 5.2.40 were also released at the same time. Fixed in updates 19 vulnerabilities, of which 7 problems have a critical severity level (CVSS is greater than 8). Including fixed vulnerabilities used in attacks demonstrated at the competition Pwn2Own 2020 and allowing through manipulations on the side of the guest system to gain access to the host system and execute code with the rights of the hypervisor.

Non-security changes in release 6.1.6:

  • Support for the Linux 5.6 kernel has been added to the components for the host environment and additions for guests;
  • Improved support for 2D and 3D acceleration and rendering;
  • Improvements have been made to the user interface and visual elements have been updated;
  • Resolved issues with screen resizing and handling of multi-monitor configurations in X11 guests
    and virtual graphics adapter VMSVGA;

  • Improved stability and performance of the USB subsystem;
  • Improved error handling in the serial port driver and fixed a hang that occurs when the host system port disappears;
  • Fixed fixes in VBoxManage related to guestcontrol operations;
  • An issue with exception handling in bindings for the Python language has been fixed in the API;
  • Fixed bugs in the implementation of the clipboard sharing subsystem and added support for HTML data.

Source: opennet.ru

Add a comment