CVE-2018-1000517

Priority
Description
BusyBox project BusyBox wget version prior to commit
8e2174e9bd836e53c8b9c6e00d1bc6e2a718686e contains a Buffer Overflow
vulnerability in Busybox wget that can result in heap buffer overflow. This
attack appear to be exploitable via network connectivity. This
vulnerability appears to have been fixed in after commit
8e2174e9bd836e53c8b9c6e00d1bc6e2a718686e.
Notes
Package
Upstream:released (1:1.27.2-3)
Ubuntu 12.04 ESM (Precise Pangolin):needed
Ubuntu 14.04 ESM (Trusty Tahr):released (1:1.21.0-1ubuntu1.4)
Ubuntu 16.04 LTS (Xenial Xerus):released (1:1.22.0-15ubuntu1.4)
Ubuntu 18.04 LTS (Bionic Beaver):released (1:1.27.2-2ubuntu3.2)
Ubuntu 19.04 (Disco Dingo):released (1:1.27.2-2ubuntu5)
Ubuntu 19.10 (Eoan Ermine):released (1:1.27.2-2ubuntu5)
Ubuntu 20.04 (Focal Fossa):released (1:1.27.2-2ubuntu5)
Patches:
Upstream:https://git.busybox.net/busybox/commit/?id=8e2174e9bd836e53c8b9c6e00d1bc6e2a718686e
More Information

Updated: 2019-12-05 19:51:39 UTC (commit 0aa5e7c87c8b55d2ec5c7f4ca1179cf75de91961)