CVE-2021-42382

Related Vulnerabilities: CVE-2021-42382  

A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s function

Description

The MITRE CVE dictionary describes this issue as:

A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s function

Additional Information

  • Bugzilla 2023929: CVE-2021-42382 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s()
  • CWE-416: Use After Free
  • FAQ: Frequently asked questions about CVE-2021-42382