关键漏洞信息 Package: busybox Version: 1:1.22.0-9+deb8u2 CVE IDs: CVE-2011-5325, CVE-2013-1813, CVE-2014-4607, CVE-2014-9645, CVE-2016-2147, CVE-2016-2148, CVE-2017-15873, CVE-2017-16544, CVE-2018-1000517 Vulnerability Details: - CVE-2011-5325: Path traversal vulnerability in tar implementation. - CVE-2013-1813: Incorrect permissions when creating device nodes or symlinks. - CVE-2014-4607: Integer overflow in lz0x1_decompress_safe function. - CVE-2014-9645: Local privilege escalation via function. - CVE-2016-2147: Integer overflow in leading to DoS. - CVE-2016-2148: Heap-based buffer overflow in . - CVE-2017-15873: Integer overflow in function. - CVE-2017-16544: Tab completion feature vulnerability in shell. - CVE-2018-1000517: Buffer overflow in command. - CVE-2015-9621: Buffer overflow during zip file unzipping. Version Fixed In: 1:1.22.0-9+deb8u2 for Debian 8 "Jessie".