Advisories ยป MGASA-2022-0458

Updated busybox packages fix security vulnerability

Publication date: 13 Dec 2022
Modification date: 13 Dec 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2022-30065

Description

A use-after-free in Busybox 1.35-x's awk applet leads to denial of service
and possibly code execution when processing a crafted awk pattern in the
copyvar function. (CVE-2022-30065)
                

References

SRPMS

8/core