mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-30 17:29:30 +02:00
24 lines
990 B
Markdown
24 lines
990 B
Markdown
### [CVE-2021-28831](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-28831)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
decompress_gunzip.c in BusyBox through 1.32.1 mishandles the error bit on the huft_build result pointer, with a resultant invalid free or segmentation fault, via malformed gzip data.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
No PoCs from references.
|
|
|
|
#### Github
|
|
- https://github.com/ARPSyndicate/cvemon
|
|
- https://github.com/SebastianUA/Certified-Kubernetes-Security-Specialist
|
|
- https://github.com/SilveiraLeonardo/experimenting_mkdown
|
|
- https://github.com/isgo-golgo13/gokit-gorillakit-enginesvc
|
|
- https://github.com/naokirin/dep_checkers_example
|
|
- https://github.com/thecyberbaby/Trivy-by-AquaSecurity
|
|
- https://github.com/thecyberbaby/Trivy-by-aquaSecurity
|
|
|