Описание
There is a stack overflow vulnerability in ash.c:6030 in busybox before 1.35. In the environment of Internet of Vehicles, this vulnerability can be executed from command to arbitrary code execution.
Ссылки
- Issue TrackingVendor Advisory
- Issue TrackingVendor Advisory
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
Конфигурация 2Версия до 1.36.1 (включая)
cpe:2.3:a:busybox:busybox:*:*:*:*:*:*:*:*
EPSS
Процентиль: 71%
0.00679
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-787
Связанные уязвимости
CVSS3: 9.8
ubuntu
больше 2 лет назад
There is a stack overflow vulnerability in ash.c:6030 in busybox before 1.35. In the environment of Internet of Vehicles, this vulnerability can be executed from command to arbitrary code execution.
CVSS3: 9.8
redhat
больше 2 лет назад
There is a stack overflow vulnerability in ash.c:6030 in busybox before 1.35. In the environment of Internet of Vehicles, this vulnerability can be executed from command to arbitrary code execution.
CVSS3: 9.8
debian
больше 2 лет назад
There is a stack overflow vulnerability in ash.c:6030 in busybox befor ...
EPSS
Процентиль: 71%
0.00679
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-787