cbcvebase.

Debian Busybox vulnerabilities

44 known vulnerabilities affecting debian/busybox.

Total CVEs
44
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH18MEDIUM8LOW16

Vulnerabilities

Page 2 of 3
CVE-2016-6301P3LOWCVSS 7.5fixed in busybox 1:1.27.2-1 (bookworm)2016
CVE-2016-6301 [HIGH] CVE-2016-6301: busybox - The recv_and_process_client_pkt function in networking/ntpd.c in busybox allows ... The recv_and_process_client_pkt function in networking/ntpd.c in busybox allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged NTP packet, which triggers a communication loop. Scope: local bookworm: resolved (fixed in 1:1.27.2-1) bullseye: resolved (fixed in 1:1.27.2-1) forky: resolved (fixed in 1:1.27.2-1) sid: resolved (fi
debian
CVE-2016-2147P3HIGHCVSS 7.5fixed in busybox 1:1.27.2-1 (bookworm)2016
CVE-2016-2147 [HIGH] CVE-2016-2147: busybox - Integer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows rem... Integer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows remote attackers to cause a denial of service (crash) via a malformed RFC1035-encoded domain name, which triggers an out-of-bounds heap write. Scope: local bookworm: resolved (fixed in 1:1.27.2-1) bullseye: resolved (fixed in 1:1.27.2-1) forky: resolved (fixed in 1:1.27.2-1) sid: resolved (fi
debian
CVE-2023-39810P3HIGHCVSS 7.8fixed in busybox 1:1.37.0-7 (forky)2023
CVE-2023-39810 [HIGH] CVE-2023-39810: busybox - An issue in the CPIO command of Busybox v1.33.2 allows attackers to execute a di... An issue in the CPIO command of Busybox v1.33.2 allows attackers to execute a directory traversal. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1:1.37.0-7) sid: resolved (fixed in 1:1.37.0-7) trixie: open
debian
CVE-2021-28831P3HIGHCVSS 7.5fixed in busybox 1:1.35.0-1 (bookworm)2021
CVE-2021-28831 [HIGH] CVE-2021-28831: busybox - decompress_gunzip.c in BusyBox through 1.32.1 mishandles the error bit on the hu... decompress_gunzip.c in BusyBox through 1.32.1 mishandles the error bit on the huft_build result pointer, with a resultant invalid free or segmentation fault, via malformed gzip data. Scope: local bookworm: resolved (fixed in 1:1.35.0-1) bullseye: resolved (fixed in 1:1.30.1-6+deb11u1) forky: resolved (fixed in 1:1.35.0-1) sid: resolved (fixed in 1:1.35.0-1) trixie:
debian
CVE-2022-30065P3LOWCVSS 7.8fixed in busybox 1:1.36.1-1 (forky)2022
CVE-2022-30065 [HIGH] CVE-2022-30065: busybox - A use-after-free in Busybox 1.35-x's awk applet leads to denial of service and p... A use-after-free in Busybox 1.35-x's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the copyvar function. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1:1.36.1-1) sid: resolved (fixed in 1:1.36.1-1) trixie: resolved (fixed in 1:1.36.1-1)
debian
CVE-2025-60876P3MEDIUMCVSS 6.5fixed in busybox 1:1.37.0-8 (forky)2025
CVE-2025-60876 [MEDIUM] CVE-2025-60876: busybox - BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control by... BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients s
debian
CVE-2026-26158P4HIGHCVSS 7.0fixed in busybox 1:1.37.0-10.1 (forky)2026
CVE-2026-26158 [HIGH] CVE-2026-26158: busybox - A flaw was found in BusyBox. This vulnerability allows an attacker to modify fil... A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access t
debian
CVE-2010-0001P4LOWCVSS 6.8fixed in gzip 1.3.12-9 (bookworm)2010
CVE-2010-0001 [MEDIUM] CVE-2010-0001: busybox - Integer underflow in the unlzw function in unlzw.c in gzip before 1.4 on 64-bit ... Integer underflow in the unlzw function in unlzw.c in gzip before 1.4 on 64-bit platforms, as used in ncompress and probably others, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted archive that uses LZW compression, leading to an array index error. Scope: local bookworm: resolved bullseye: res
debian
CVE-2013-1813P4LOWCVSS 7.2fixed in busybox 1:1.20.0-8 (bookworm)2013
CVE-2013-1813 [HIGH] CVE-2013-1813: busybox - util-linux/mdev.c in BusyBox before 1.21.0 uses 0777 permissions for parent dire... util-linux/mdev.c in BusyBox before 1.21.0 uses 0777 permissions for parent directories when creating nested directories under /dev/, which allows local users to have unknown impact and attack vectors. Scope: local bookworm: resolved (fixed in 1:1.20.0-8) bullseye: resolved (fixed in 1:1.20.0-8) forky: resolved (fixed in 1:1.20.0-8) sid: resolved (fixed in 1:1.20.0-8)
debian
CVE-2014-9645P4LOWCVSS 5.5fixed in busybox 1:1.22.0-15 (bookworm)2014
CVE-2014-9645 [MEDIUM] CVE-2014-9645: busybox - The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows lo... The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restrictions on loading kernel modules via a / (slash) character in a module name, as demonstrated by an "ifconfig /usbserial up" command or a "mount -t /snd_pcm none /" command. Scope: local bookworm: resolved (fixed in 1:1.22.0-15) bullseye: resolved (fixed
debian
CVE-2015-9261P4MEDIUMCVSS 5.5fixed in busybox 1:1.27.2-1 (bookworm)2015
CVE-2015-9261 [MEDIUM] CVE-2015-9261: busybox - huft_build in archival/libarchive/decompress_gunzip.c in BusyBox before 1.27.2 m... huft_build in archival/libarchive/decompress_gunzip.c in BusyBox before 1.27.2 misuses a pointer, causing segfaults and an application crash during an unzip operation on a specially crafted ZIP file. Scope: local bookworm: resolved (fixed in 1:1.27.2-1) bullseye: resolved (fixed in 1:1.27.2-1) forky: resolved (fixed in 1:1.27.2-1) sid: resolved (fixed in 1:1.27.2-1)
debian
CVE-2021-42375P4LOWCVSS 5.5fixed in busybox 1:1.35.0-1 (bookworm)2021
CVE-2021-42375 [MEDIUM] CVE-2021-42375: busybox - An incorrect handling of a special element in Busybox's ash applet leads to deni... An incorrect handling of a special element in Busybox's ash applet leads to denial of service when processing a crafted shell command, due to the shell mistaking specific characters for reserved characters. This may be used for DoS under rare conditions of filtered command input. Scope: local bookworm: resolved (fixed in 1:1.35.0-1) bullseye: open forky: resolved
debian
CVE-2021-42374P4LOWCVSS 5.3fixed in busybox 1:1.35.0-1 (bookworm)2021
CVE-2021-42374 [MEDIUM] CVE-2021-42374: busybox - An out-of-bounds heap read in Busybox's unlzma applet leads to information leak ... An out-of-bounds heap read in Busybox's unlzma applet leads to information leak and denial of service when crafted LZMA-compressed input is decompressed. This can be triggered by any applet/format that Scope: local bookworm: resolved (fixed in 1:1.35.0-1) bullseye: resolved (fixed in 1:1.30.1-6+deb11u1) forky: resolved (fixed in 1:1.35.0-1) sid: resolved (fixed in
debian
CVE-2017-15873P4MEDIUMCVSS 5.5fixed in busybox 1:1.27.2-2 (bookworm)2017
CVE-2017-15873 [MEDIUM] CVE-2017-15873: busybox - The get_next_block function in archival/libarchive/decompress_bunzip2.c in BusyB... The get_next_block function in archival/libarchive/decompress_bunzip2.c in BusyBox 1.27.2 has an Integer Overflow that may lead to a write access violation. Scope: local bookworm: resolved (fixed in 1:1.27.2-2) bullseye: resolved (fixed in 1:1.27.2-2) forky: resolved (fixed in 1:1.27.2-2) sid: resolved (fixed in 1:1.27.2-2) trixie: resolved (fixed in 1:1.27.2-2)
debian
CVE-2017-15874P4MEDIUMCVSS 5.0fixed in busybox 1:1.27.2-2 (bookworm)2017
CVE-2017-15874 [MEDIUM] CVE-2017-15874: busybox - archival/libarchive/decompress_unlzma.c in BusyBox 1.27.2 has an Integer Underfl... archival/libarchive/decompress_unlzma.c in BusyBox 1.27.2 has an Integer Underflow that leads to a read access violation. Scope: local bookworm: resolved (fixed in 1:1.27.2-2) bullseye: resolved (fixed in 1:1.27.2-2) forky: resolved (fixed in 1:1.27.2-2) sid: resolved (fixed in 1:1.27.2-2) trixie: resolved (fixed in 1:1.27.2-2)
debian
CVE-2023-42366P4MEDIUMCVSS 5.5fixed in busybox 1:1.37.0-8 (forky)2023
CVE-2023-42366 [MEDIUM] CVE-2023-42366: busybox - A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token func... A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1:1.37.0-8) sid: resolved (fixed in 1:1.37.0-8) trixie: open
debian
CVE-2021-42376P4LOWCVSS 5.5fixed in busybox 1:1.35.0-1 (bookworm)2021
CVE-2021-42376 [MEDIUM] CVE-2021-42376: busybox - A NULL pointer dereference in Busybox's hush applet leads to denial of service w... A NULL pointer dereference in Busybox's hush applet leads to denial of service when processing a crafted shell command, due to missing validation after a \x03 delimiter character. This may be used for DoS under very rare conditions of filtered command input. Scope: local bookworm: resolved (fixed in 1:1.35.0-1) bullseye: open forky: resolved (fixed in 1:1.35.0-1)
debian
CVE-2023-42365P4MEDIUMCVSS 5.5fixed in busybox 1:1.30.1-6+deb11u1 (bullseye)2023
CVE-2023-42365 [MEDIUM] CVE-2023-42365: busybox - A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted ... A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function. Scope: local bookworm: open bullseye: resolved (fixed in 1:1.30.1-6+deb11u1) forky: resolved (fixed in 1:1.37.0-1) sid: resolved (fixed in 1:1.37.0-1) trixie: resolved (fixed in 1:1.37.0-1)
debian
CVE-2023-42364P4MEDIUMCVSS 5.5fixed in busybox 1:1.30.1-6+deb11u1 (bullseye)2023
CVE-2023-42364 [MEDIUM] CVE-2023-42364: busybox - A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a d... A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function. Scope: local bookworm: open bullseye: resolved (fixed in 1:1.30.1-6+deb11u1) forky: resolved (fixed in 1:1.37.0-1) sid: resolved (fixed in 1:1.37.0-1) trixie: resolved (fixed in 1:1.37.0-1)
debian
CVE-2023-42363P4MEDIUMCVSS 5.5fixed in busybox 1:1.37.0-1 (forky)2023
CVE-2023-42363 [MEDIUM] CVE-2023-42363: busybox - A use-after-free vulnerability was discovered in xasprintf function in xfuncs_pr... A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1:1.37.0-1) sid: resolved (fixed in 1:1.37.0-1) trixie: resolved (fixed in 1:1.37.0-1)
debian
Debian Busybox vulnerabilities | cvebase