There is a stack overflow vulnerability in ash.c:6030 in busybox before 1.35. In the environment of Internet of Vehicles, this vulnerability can be executed from command to arbitrary code execution.
{
"availability": "No subscription required",
"priority_reason": "Denial of service only in shell",
"binaries": [
{
"binary_name": "busybox",
"binary_version": "1:1.30.1-4ubuntu6.5"
},
{
"binary_name": "busybox-initramfs",
"binary_version": "1:1.30.1-4ubuntu6.5"
},
{
"binary_name": "busybox-static",
"binary_version": "1:1.30.1-4ubuntu6.5"
},
{
"binary_name": "busybox-syslogd",
"binary_version": "1:1.30.1-4ubuntu6.5"
},
{
"binary_name": "udhcpc",
"binary_version": "1:1.30.1-4ubuntu6.5"
},
{
"binary_name": "udhcpd",
"binary_version": "1:1.30.1-4ubuntu6.5"
}
]
}{
"availability": "No subscription required",
"priority_reason": "Denial of service only in shell",
"binaries": [
{
"binary_name": "busybox",
"binary_version": "1:1.30.1-7ubuntu3.1"
},
{
"binary_name": "busybox-initramfs",
"binary_version": "1:1.30.1-7ubuntu3.1"
},
{
"binary_name": "busybox-static",
"binary_version": "1:1.30.1-7ubuntu3.1"
},
{
"binary_name": "busybox-syslogd",
"binary_version": "1:1.30.1-7ubuntu3.1"
},
{
"binary_name": "udhcpc",
"binary_version": "1:1.30.1-7ubuntu3.1"
},
{
"binary_name": "udhcpd",
"binary_version": "1:1.30.1-7ubuntu3.1"
}
]
}{
"availability": "No subscription required",
"priority_reason": "Denial of service only in shell",
"binaries": [
{
"binary_name": "busybox",
"binary_version": "1:1.36.1-6ubuntu3.1"
},
{
"binary_name": "busybox-initramfs",
"binary_version": "1:1.36.1-6ubuntu3.1"
},
{
"binary_name": "busybox-static",
"binary_version": "1:1.36.1-6ubuntu3.1"
},
{
"binary_name": "busybox-syslogd",
"binary_version": "1:1.36.1-6ubuntu3.1"
},
{
"binary_name": "udhcpc",
"binary_version": "1:1.36.1-6ubuntu3.1"
},
{
"binary_name": "udhcpd",
"binary_version": "1:1.36.1-6ubuntu3.1"
}
]
}{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"priority_reason": "Denial of service only in shell",
"binaries": [
{
"binary_name": "busybox",
"binary_version": "1:1.21.0-1ubuntu1.4+esm1"
},
{
"binary_name": "busybox-initramfs",
"binary_version": "1:1.21.0-1ubuntu1.4+esm1"
},
{
"binary_name": "busybox-static",
"binary_version": "1:1.21.0-1ubuntu1.4+esm1"
},
{
"binary_name": "busybox-syslogd",
"binary_version": "1:1.21.0-1ubuntu1.4+esm1"
},
{
"binary_name": "udhcpc",
"binary_version": "1:1.21.0-1ubuntu1.4+esm1"
},
{
"binary_name": "udhcpd",
"binary_version": "1:1.21.0-1ubuntu1.4+esm1"
}
]
}{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"priority_reason": "Denial of service only in shell",
"binaries": [
{
"binary_name": "busybox",
"binary_version": "1:1.22.0-15ubuntu1.4+esm2"
},
{
"binary_name": "busybox-initramfs",
"binary_version": "1:1.22.0-15ubuntu1.4+esm2"
},
{
"binary_name": "busybox-static",
"binary_version": "1:1.22.0-15ubuntu1.4+esm2"
},
{
"binary_name": "busybox-syslogd",
"binary_version": "1:1.22.0-15ubuntu1.4+esm2"
},
{
"binary_name": "udhcpc",
"binary_version": "1:1.22.0-15ubuntu1.4+esm2"
},
{
"binary_name": "udhcpd",
"binary_version": "1:1.22.0-15ubuntu1.4+esm2"
}
]
}{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"priority_reason": "Denial of service only in shell",
"binaries": [
{
"binary_name": "busybox",
"binary_version": "1:1.27.2-2ubuntu3.4+esm1"
},
{
"binary_name": "busybox-initramfs",
"binary_version": "1:1.27.2-2ubuntu3.4+esm1"
},
{
"binary_name": "busybox-static",
"binary_version": "1:1.27.2-2ubuntu3.4+esm1"
},
{
"binary_name": "busybox-syslogd",
"binary_version": "1:1.27.2-2ubuntu3.4+esm1"
},
{
"binary_name": "udhcpc",
"binary_version": "1:1.27.2-2ubuntu3.4+esm1"
},
{
"binary_name": "udhcpd",
"binary_version": "1:1.27.2-2ubuntu3.4+esm1"
}
]
}