]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commit
busybox: CVE-2017-16544
authorZhixiong Chi <zhixiong.chi@windriver.com>
Mon, 4 Dec 2017 08:17:25 +0000 (00:17 -0800)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Sun, 10 Dec 2017 22:41:42 +0000 (22:41 +0000)
commitaa41f0c37460a2863ce26d1321c19c9bedf680c4
tree1662a3889faed5807e2b11d1b4fdc9156f9d8644
parentecad98a0ffe41d8cc8890d16be09e4b604a1e192
busybox: CVE-2017-16544

In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2,
the tab autocomplete feature of the shell, used to get a list of filenames
in a directory, does not sanitize filenames and results in executing any
escape sequence in the terminal. This could potentially result in code
execution, arbitrary file writes, or other attacks.

Backport the patch from:
https://git.busybox.net/busybox/commit/?id=c3797d40a1c57352192c6106cc0f435e7d9c11e8
https://nvd.nist.gov/vuln/detail/CVE-2017-16544

Signed-off-by: Zhixiong Chi <zhixiong.chi@windriver.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
meta/recipes-core/busybox/busybox/busybox-CVE-2017-16544.patch [new file with mode: 0644]
meta/recipes-core/busybox/busybox_1.27.2.bb