https://seclists.org/oss-sec/2025/q2/98: vulnerabilities in busybox tar and cpio tools
Published Apr 25, 2025
·Updated
Affected Software
1 affected component
Busybox Busybox
Frequently Asked Questions
1
What is the severity of CVE-2025-46394?
CVE-2025-46394 has been classified as a critical vulnerability that could lead to arbitrary code execution.
2
How do I fix CVE-2025-46394?
To fix CVE-2025-46394, update Busybox to the latest version that includes the patch for this vulnerability.
3
What components are affected by CVE-2025-46394?
CVE-2025-46394 affects the tar and cpio utilities within the Busybox software package.
4
What are the potential impacts of CVE-2025-46394?
The potential impacts of CVE-2025-46394 include unauthorized access, data manipulation, or a full system compromise.
5
When was CVE-2025-46394 published?
CVE-2025-46394 was published on April 25, 2025.