Security Advisory

CVE-2026-38755

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-15 00:00:00
Last updated 2026-07-20 15:30:59
Assigner mitre
CVSS score 2.9
State PUBLISHED

Description

A heap overflow in the evalcommand() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input.