Fedora Account System
Red Hat Associate
Red Hat Customer
A vulnerability was found in the BusyBox dpkg implementation (archival/dpkg.c). The restart path in read_package_field() incorrectly handles the case where a field has a name but an empty value followed by a NUL terminator, stepping one byte past the buffer and reading adjacent heap memory. This causes a bus error or segfault.