CVE-2021-42374

An out-of-bounds heap read in Busybox's unlzma applet leads to information leak and denial of service when crafted LZMA-compressed input is decompressed. This can be triggered by any applet/format that
Configurations

Configuration 1 (hide)

cpe:2.3:a:busybox:busybox:*:*:*:*:*:*:*:*

Information

Published : 2021-11-15 21:15

Updated : 2021-11-25 03:15


NVD link : CVE-2021-42374

Mitre link : CVE-2021-42374


JSON object : View

Products Affected

busybox

  • busybox
CWE
CWE-125

Out-of-bounds Read