K000152680: BusyBox vulnerability CVE-2024-58251
Discription

image
Security Advisory Description In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv[0] containing an ANSI terminal escape sequence, leading to a denial of service (terminal locked up) when netstat is used by a victim. (CVE-2024-58251) Impact Attackers can launch network applications as local users leading to a denial-of-service (DoS). As attackers require local access to run netstat commands, the attack is limited to only the netstat…Read More

Back to Main

Subscribe for the latest news: