Buffer Overflow Vulnerability in BusyBox Wget Affects Multiple Versions
CVE-2018-1000517
9.8CRITICAL
What is CVE-2018-1000517?
A Buffer Overflow vulnerability exists in the BusyBox Wget component, allowing attackers to exploit heap memory management issues. This vulnerability can be exploited via network connectivity, potentially leading to unauthorized access or system compromise. The issue has been resolved in versions updated post commit 8e2174e9bd836e53c8b9c6e00d1bc6e2a718686e, highlighting the importance of keeping systems up-to-date to mitigate security risks.
References
EPSS Score
32% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
