CVE-2021-42386

Related Vulnerabilities: CVE-2021-42386  

A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc function

Description

The MITRE CVE dictionary describes this issue as:

A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc function

Additional Information

  • Bugzilla 2023938: CVE-2021-42386 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc()
  • CWE-416: Use After Free
  • FAQ: Frequently asked questions about CVE-2021-42386