CVE-2018-20679 | BusyBox up to 1.29.x udhcp common.c udhcp_get_option DHCP Message out-of-bounds (Bug 154361 / EUVD-2018-13227)
A vulnerability has been found in BusyBox up to 1.29.x and classified as problematic. Affected by this vulnerability is the function udhcp_get_option of the file networking/udhcp/common.c of the component udhcp. The manipulation as part of DHCP Message leads to out-of-bounds read.
This vulnerability is known as CVE-2018-20679. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.