Medium severity5.5NVD Advisory· Published Nov 27, 2023· Updated Jun 17, 2026
CVE-2023-42366
CVE-2023-42366
Description
A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159.
Affected products
7- osv-coords4 versionspkg:apk/chainguard/busyboxpkg:apk/chainguard/busybox-fullpkg:apk/wolfi/busyboxpkg:apk/wolfi/busybox-full
< 0+ 3 more
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
Patches
Vulnerability mechanics
References
2- bugs.busybox.net/show_bug.cginvdExploitIssue TrackingVendor Advisory
- security.netapp.com/advisory/ntap-20241206-0007/nvd
News mentions
0No linked articles in our index yet.