CVE-2022-28391
- EPSS 3.54%
- Veröffentlicht 03.04.2022 21:15:08
- Zuletzt bearbeitet 09.06.2025 16:15:33
BusyBox through 1.35.0 allows remote attackers to execute arbitrary code if netstat is used to print a DNS PTR record's value to a VT compatible terminal. Alternatively, the attacker could choose to change the terminal's colors.
CVE-2021-42386
- EPSS 0.29%
- Veröffentlicht 15.11.2021 21:15:08
- Zuletzt bearbeitet 03.11.2025 21:15:47
A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc function
CVE-2021-42385
- EPSS 0.29%
- Veröffentlicht 15.11.2021 21:15:08
- Zuletzt bearbeitet 03.11.2025 21:15:46
A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate function
CVE-2021-42384
- EPSS 0.24%
- Veröffentlicht 15.11.2021 21:15:08
- Zuletzt bearbeitet 03.11.2025 21:15:46
A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the handle_special function
CVE-2021-42383
- EPSS 0.3%
- Veröffentlicht 15.11.2021 21:15:08
- Zuletzt bearbeitet 23.04.2025 20:15:34
A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate function
CVE-2021-42377
- EPSS 1.86%
- Veröffentlicht 15.11.2021 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:27:41
An attacker-controlled pointer free in Busybox's hush applet leads to denial of service and possible code execution when processing a crafted shell command, due to the shell mishandling the &&& string. This may be used for remote code execution under...
CVE-2021-42382
- EPSS 0.32%
- Veröffentlicht 15.11.2021 21:15:07
- Zuletzt bearbeitet 03.11.2025 21:15:45
A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s function
CVE-2021-42381
- EPSS 0.32%
- Veröffentlicht 15.11.2021 21:15:07
- Zuletzt bearbeitet 03.11.2025 21:15:45
A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the hash_init function
CVE-2021-42380
- EPSS 0.45%
- Veröffentlicht 15.11.2021 21:15:07
- Zuletzt bearbeitet 03.11.2025 21:15:45
A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the clrvar function
CVE-2021-42379
- EPSS 0.24%
- Veröffentlicht 15.11.2021 21:15:07
- Zuletzt bearbeitet 03.11.2025 21:15:45
A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the next_input_file function