Buffer Overflow Vulnerability in BusyBox Affected by Malformed Gzip Data
CVE-2021-28831
7.5HIGH
What is CVE-2021-28831?
A vulnerability has been identified in BusyBox, where the decompress_gunzip function mishandles the error bit on the huft_build result pointer. This mishandling can lead to an invalid free or a segmentation fault when processing malformed gzip data. Users and developers should take precaution to update their BusyBox installations to mitigate potential exploitation of this flaw.
