QID 751281
Date Published: 2021-10-29
QID 751281: SUSE Enterprise Linux Security Update for busybox (SUSE-SU-2021:3531-1)
This update for busybox fixes the following issues: - cve-2021-28831: fixed invalid free or segmentation fault via malformed gzip data (bsc#1184522).
- cve-2018-20679: fixed out of bounds read in udhcp (bsc#1121426).
- cve-2018-1000517: fixed buffer overflow in the retrieve_file_data() (bsc#1099260).
- cve-2011-5325: fixed a directory traversal related to 'tar' command (bsc#951562).
- cve-2018-1000500: fixed missing ssl certificate validation related to the 'wget' command (bsc#1099263).
Note: The preceding description block is extracted directly from the security advisory. Using automation, we have attempted to clean and format it as much as possible without introducing additional issues.
Successful exploitation allows attacker to compromise the system.
- SUSE-SU-2021:3531-1 -
lists.suse.com/pipermail/sle-security-updates/2021-October/009658.html
CVEs related to QID 751281
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| SUSE-SU-2021:3531-1 | SUSE Enterprise Linux |
|