Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-89690
HistoryNov 12, 2021 - 12:00 a.m.

BusyBox buffer overflow vulnerability

2021-11-1200:00:00
China National Vulnerability Database
www.cnvd.org.cn
13

0.001 Low

EPSS

Percentile

47.0%

A buffer overflow vulnerability exists in the Busybox unlzma applet, which stems from an out-of-bounds heap read in Busybox’s unlzma applet that can lead to information leakage and denial of service when unzipping lzma compressed input to a denial of service. No details of the vulnerability are currently available.

CPENameOperatorVersion
BusyBox BusyBox >=1.27.0,le1.33.1