busybox is vulnerable to denial of service. An integer overflow in the get_next_block
function in archival/libarchive/decompress_bunzip2.c
may lead to a write access violation and result in an application crash.
CPE | Name | Operator | Version |
---|---|---|---|
busybox:3.3 | eq | 1.24.2-r1 | |
busybox:trusty | eq | 1:1.21.0-1ubuntu1 | |
busybox:xenial | eq | 1:1.22.0-15ubuntu1 | |
busybox:stretch | eq | 1:1.22.0-19+b3 |