In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks.
History

Mon, 09 Jun 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2017-11-20T15:00:00.000Z

Updated: 2025-06-09T15:35:03.132Z

Reserved: 2017-11-05T00:00:00.000Z

Link: CVE-2017-16544

cve-icon Vulnrichment

Updated: 2024-08-05T20:27:04.005Z

cve-icon NVD

Status : Deferred

Published: 2017-11-20T15:29:00.387

Modified: 2025-06-09T16:15:26.850

Link: CVE-2017-16544

cve-icon Redhat

Severity : Moderate

Publid Date: 2017-11-08T00:00:00Z

Links: CVE-2017-16544 - Bugzilla