[PATCH 0/2] Fix CVE-2022-28391

Hauke Mehrtens hauke at hauke-m.de
Mon Dec 5 23:26:00 UTC 2022


On 7/19/22 17:53, Radoslav Kolev wrote:
> The following two patches fix CVE-2022-2839 preventing netstat,
> traceroute and nslookup from sending escape sequences to the terminal.
> Note that the problem is only reproducible when using musl libc, but
> not with glibc.
> 
> More information can be found at:
> https://gitlab.alpinelinux.org/alpine/aports/-/issues/13661

Hi Denys,

Could you please have a look at these fixes. They should fix some 
"security" problems which got a CVE assigned.

Hauke


More information about the busybox mailing list