Логотип exploitDog
bind:"GHSA-r8f8-4pgh-4m8v" OR bind:"CVE-2026-26158"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-r8f8-4pgh-4m8v" OR bind:"CVE-2026-26158"

Количество 9

Количество 9

github логотип

GHSA-r8f8-4pgh-4m8v

около 1 месяца назад

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
EPSS: Низкий
ubuntu логотип

CVE-2026-26158

около 1 месяца назад

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2026-26158

около 2 месяцев назад

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2026-26158

около 1 месяца назад

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2026-26158

около 1 месяца назад

A flaw was found in BusyBox. This vulnerability allows an attacker to ...

CVSS3: 7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0759-1

25 дней назад

Security update for busybox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0758-1

25 дней назад

Security update for busybox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0892-1

15 дней назад

Security update for busybox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0872-1

17 дней назад

Security update for busybox

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-r8f8-4pgh-4m8v

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
0%
Низкий
около 1 месяца назад
ubuntu логотип
CVE-2026-26158

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-26158

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2026-26158

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2026-26158

A flaw was found in BusyBox. This vulnerability allows an attacker to ...

CVSS3: 7
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0759-1

Security update for busybox

25 дней назад
suse-cvrf логотип
SUSE-SU-2026:0758-1

Security update for busybox

25 дней назад
suse-cvrf логотип
SUSE-SU-2026:0892-1

Security update for busybox

15 дней назад
suse-cvrf логотип
SUSE-SU-2026:0872-1

Security update for busybox

17 дней назад

Уязвимостей на страницу