在 BusyBox 1.30.1 及更早版本中发现了一个漏洞。该漏洞影响了组件 FEATURE_WGET_TIMEOUT 处理器中 networking/wget.c 文件的未知代码。对参数 -T 的此类操纵会导致空指针解引用。需要本地访问才能利用此漏洞。该漏洞的利用代码已公开,可被使用。补丁名称为 83a40bf7a93c8ac093d33ab452222dd5b9eb57ff。应应用此补丁以修复该问题。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | BusyBox | 1.30.0 |
cpe:2.3:a:busybox:busybox:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-4996 | 5.3 MEDIUM | mruby bigint.c udiv floating point comparison with incorrect operator |
| CVE-2026-51367 | Bottinelli Informatica Vedo Suite 安全漏洞 | |
| CVE-2026-51366 | Bottinelli Informatica Vedo Suite 安全漏洞 | |
| CVE-2026-50719 | 芯驰T41/T32/T40/A1 SoC安全启动漏洞 | |
| CVE-2026-50720 | 英伟达T31 Secure Boot绕过漏洞 | |
| CVE-2026-71694 | BOOM v1.2远程代码执行漏洞 |
No comments yet