Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 11

Количество 11

github логотип

GHSA-r8f8-4pgh-4m8v

6 месяцев назад

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
EPSS: Низкий
ubuntu логотип

CVE-2026-26158

6 месяцев назад

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2026-26158

6 месяцев назад

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2026-26158

6 месяцев назад

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2026-26158

6 месяцев назад

A flaw was found in BusyBox. This vulnerability allows an attacker to ...

CVSS3: 7
EPSS: Низкий
fstec логотип

BDU:2026-11383

7 месяцев назад

Уязвимость компонента data_extract_all.c набора UNIX-утилит командной строки BusyBox, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20387-1

5 месяцев назад

Security update for busybox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0759-1

5 месяцев назад

Security update for busybox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0758-1

5 месяцев назад

Security update for busybox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0892-1

5 месяцев назад

Security update for busybox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0872-1

5 месяцев назад

Security update for busybox

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-r8f8-4pgh-4m8v

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
0%
Низкий
6 месяцев назад
ubuntu логотип
CVE-2026-26158

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2026-26158

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-26158

A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.

CVSS3: 7
0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-26158

A flaw was found in BusyBox. This vulnerability allows an attacker to ...

CVSS3: 7
0%
Низкий
6 месяцев назад
fstec логотип
BDU:2026-11383

Уязвимость компонента data_extract_all.c набора UNIX-утилит командной строки BusyBox, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7
0%
Низкий
7 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20387-1

Security update for busybox

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0759-1

Security update for busybox

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0758-1

Security update for busybox

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0892-1

Security update for busybox

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0872-1

Security update for busybox

5 месяцев назад

Уязвимостей на страницу