Updated: 2024-11-23 04:50:23.762295
Description:
A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc function
Links | NIST | CIRCL | RHEL | Ubuntu |
Severity | Score | |
---|---|---|
CVSS Version 2.x | MEDIUM | 6.5 |
CVSS Version 3.x | HIGH | 7.2 |
OS name | Project name | Version | Score | Severity | Status | Errata | Last updated | Statement |
---|---|---|---|---|---|---|---|---|
Ubuntu 16.04 ELS | busybox | 1.22.0 | 7.2 | HIGH | Released | CLSA-2021:1638804058 | 2022-01-04 14:19:57 | |
Ubuntu 18.04 ELS | busybox | 1.27.2 | 7.2 | HIGH | Already Fixed | 2023-06-02 09:11:09 |