CVE-2025-46394
EUVD-2025-1198423.04.2025, 16:15
In tar in BusyBox through 1.37.0, a TAR archive can have filenames hidden from a listing through the use of terminal escape sequences.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| busybox | busybox | 𝑥 ≤ 1.37.0 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| Siemens | RUGGEDCOM RST2428P | 𝑥 < V4.0 | ADP |
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| busybox |
| ||||||||||||||||
| busybox-static |
|