An out-of-bounds heap read in Busybox's unlzma applet leads to information leak and denial of service when crafted LZMA-compressed input is decompressed. This can be triggered by any applet/format that
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
busybox busybox |
||
fedoraproject fedora 33 |
||
fedoraproject fedora 34 |
||
netapp cloud backup - |
||
netapp solidfire - |
||
netapp hci management node - |
||
netapp h300s_firmware - |
||
netapp h500s_firmware - |
||
netapp h700s_firmware - |
||
netapp h300e_firmware - |
||
netapp h500e_firmware - |
||
netapp h700e_firmware - |
||
netapp h410s_firmware - |