NA

CVE-2023-42366

Published: 27/11/2023 Updated: 30/11/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A heap-buffer-overflow exists in BusyBox v.1.36.1 in the next_token function at awk.c:1159.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

busybox busybox 1.36.1

Vendor Advisories

Debian Bug report logs - #1059053 busybox: CVE-2023-42366 Package: src:busybox; Maintainer for src:busybox is Debian Install System Team <debian-boot@listsdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Tue, 19 Dec 2023 21:21:10 UTC Severity: important Tags: security, upstream Forwarded to ht ...
DescriptionThe MITRE CVE dictionary describes this issue as: A heap-buffer-overflow was discovered in BusyBox v1361 in the next_token function at awkc:1159 ...