CVE-2024-58251: Busybox
Low severity, CVSS 2.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv[0] containing an ANSI terminal escape sequence, leading to a denial of service (terminal locked up) when netstat is used by a victim.
Affected products
- Busybox Busybox: up to and including 1.37.0
Published 2025-04-23. Last modified 2026-06-17.