Описание
Heap-based buffer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows remote attackers to have unspecified impact via vectors involving OPTION_6RD parsing.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | not-affected | 1:1.27.2-1ubuntu3 |
| cosmic | not-affected | 1:1.27.2-1ubuntu3 |
| devel | not-affected | 1:1.27.2-1ubuntu3 |
| esm-infra-legacy/trusty | released | 1:1.21.0-1ubuntu1.4 |
| esm-infra/bionic | not-affected | 1:1.27.2-1ubuntu3 |
| esm-infra/xenial | released | 1:1.22.0-15ubuntu1.4 |
| precise | not-affected | 6RD code not present |
| precise/esm | not-affected | 6RD code not present |
| trusty | released | 1:1.21.0-1ubuntu1.4 |
Показывать по
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
Heap-based buffer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows remote attackers to have unspecified impact via vectors involving OPTION_6RD parsing.
Heap-based buffer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows remote attackers to have unspecified impact via vectors involving OPTION_6RD parsing.
Heap-based buffer overflow in the DHCP client (udhcpc) in BusyBox befo ...
Heap-based buffer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows remote attackers to have unspecified impact via vectors involving OPTION_6RD parsing.
Уязвимость DHCP клиента набора UNIX-утилит командной строки BusyBox, связанная с выходом операции за допустимые границы буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
7.5 High
CVSS2
9.8 Critical
CVSS3