Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jcqv-rj94-jmx3

Опубликовано: 16 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A heap overflow in the evalcommand() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input.

A heap overflow in the evalcommand() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input.

EPSS

Процентиль: 11%
0.00207
Низкий

7.5 High

CVSS3

Дефекты

CWE-122
CWE-674

Связанные уязвимости

CVSS3: 2.9
ubuntu
22 дня назад

A heap overflow in the evalcommand() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input.

CVSS3: 5.5
redhat
23 дня назад

A heap overflow in the evalcommand() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input.

CVSS3: 2.9
nvd
22 дня назад

A heap overflow in the evalcommand() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input.

CVSS3: 7.5
msrc
17 дней назад

A heap overflow in the evalcommand() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input.

CVSS3: 2.9
debian
22 дня назад

A heap overflow in the evalcommand() function (shell/ash.c) of Busybox ...

EPSS

Процентиль: 11%
0.00207
Низкий

7.5 High

CVSS3

Дефекты

CWE-122
CWE-674