huft_build in archival/libarchive/decompress_gunzip.c in BusyBox before 1.27.2 misuses a pointer, causing segfaults and an application crash during an unzip operation on a specially crafted ZIP file.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Busybox | Busybox | * | 1.27.2 (excluding) |
Busybox | Ubuntu | precise/esm | * |
Busybox | Ubuntu | trusty | * |
Busybox | Ubuntu | upstream | * |
Busybox | Ubuntu | xenial | * |