Количество 11
Количество 11
GHSA-234c-568r-p7m4
In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks.
CVE-2017-16544
In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks.
CVE-2017-16544
In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks.
CVE-2017-16544
In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks.
CVE-2017-16544
In the add_match function in libbb/lineedit.c in BusyBox through 1.27. ...
BDU:2021-03363
Уязвимость функции add_match компонента libbb/lineedit.c набора UNIX-утилит командной строки BusyBox, связанная с недостатком механизма управления генерацией кода, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
openSUSE-SU-2022:0135-1
Security update for busybox
SUSE-SU-2022:3959-1
Security update for busybox
SUSE-SU-2022:0135-2
Security update for busybox
SUSE-SU-2022:0135-1
Security update for busybox
SUSE-SU-2022:4253-1
Security update for busybox
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-234c-568r-p7m4 In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks. | CVSS3: 8.8 | 1% Низкий | больше 3 лет назад | |
CVE-2017-16544 In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks. | CVSS3: 8.8 | 1% Низкий | почти 8 лет назад | |
CVE-2017-16544 In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks. | CVSS3: 4.8 | 1% Низкий | почти 8 лет назад | |
CVE-2017-16544 In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks. | CVSS3: 8.8 | 1% Низкий | почти 8 лет назад | |
CVE-2017-16544 In the add_match function in libbb/lineedit.c in BusyBox through 1.27. ... | CVSS3: 8.8 | 1% Низкий | почти 8 лет назад | |
BDU:2021-03363 Уязвимость функции add_match компонента libbb/lineedit.c набора UNIX-утилит командной строки BusyBox, связанная с недостатком механизма управления генерацией кода, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 8.8 | 1% Низкий | около 8 лет назад | |
openSUSE-SU-2022:0135-1 Security update for busybox | почти 4 года назад | |||
SUSE-SU-2022:3959-1 Security update for busybox | почти 3 года назад | |||
SUSE-SU-2022:0135-2 Security update for busybox | больше 3 лет назад | |||
SUSE-SU-2022:0135-1 Security update for busybox | почти 4 года назад | |||
SUSE-SU-2022:4253-1 Security update for busybox | почти 3 года назад |
Уязвимостей на страницу