https://seclists.org/oss-sec/2025/q2/83: vulnerabilities in busybox tar and cpio tools
Published Apr 24, 2025
·Updated
Affected Software
1 affected component
Busybox Busybox
Frequently Asked Questions
1
What is the severity of CVE-2025-46394?
CVE-2025-46394 has a medium severity score, indicating potential impacts on system integrity and availability.
2
How do I fix CVE-2025-46394?
To fix CVE-2025-46394, update to the latest version of Busybox that includes the security patches for this vulnerability.
3
What are the potential impacts of CVE-2024-58251?
CVE-2024-58251 may allow unauthorized access or modification of data, compromising the security of affected systems.
4
Is CVE-2025-46394 fixed in Busybox version 1.37.0?
Yes, Busybox version 1.37.0 includes fixes for CVE-2025-46394.
5
What should I do if I cannot update to Busybox 1.37.0 for CVE-2025-46394?
If updating is not possible, consider applying workarounds or mitigations outlined in the security advisory for CVE-2025-46394.