Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-30065

Опубликовано: 18 мая 2022
Источник: redhat
CVSS3: 6.2

Описание

A use-after-free in Busybox 1.35-x's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the copyvar function.

A flaw was found in BusyBox. It did not properly sanitize while processing a crafted awk pattern, leading to possible code execution.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6busyboxOut of support scope

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=2088233busybox: A use-after-free in Busybox's awk applet leads to denial of service

6.2 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

A use-after-free in Busybox 1.35-x's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the copyvar function.

CVSS3: 7.8
nvd
больше 3 лет назад

A use-after-free in Busybox 1.35-x's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the copyvar function.

CVSS3: 7.8
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.8
debian
больше 3 лет назад

A use-after-free in Busybox 1.35-x's awk applet leads to denial of ser ...

suse-cvrf
около 3 лет назад

Security update for busybox

6.2 Medium

CVSS3