First published: Mon Sep 04 2023(Updated: )
There is a stack overflow vulnerability in ash.c:6030 in busybox before 1.35. In the environment of Internet of Vehicles, this vulnerability can be executed from command to arbitrary code execution. <a href="https://bugs.busybox.net/show_bug.cgi?id=15216">https://bugs.busybox.net/show_bug.cgi?id=15216</a>
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu BusyBox Static | <1.35 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2237153 is high due to the potential for arbitrary code execution.
To fix REDHAT-BUG-2237153, update BusyBox to version 1.35 or higher.
REDHAT-BUG-2237153 affects BusyBox versions prior to 1.35, particularly in Internet of Vehicles environments.
Yes, REDHAT-BUG-2237153 can be exploited remotely through command execution.
REDHAT-BUG-2237153 is a stack overflow vulnerability located in ash.c at line 6030.