{"id":"BELL-CVE-2026-38754","modified":"2026-08-11T07:15:05.201541674Z","published":"2026-07-18T06:04:43.886251Z","upstream":["CVE-2026-38754"],"references":[{"type":"ADVISORY","url":"https://docs.bell-sw.com/security/cves/CVE-2026-38754"}],"affected":[{"package":{"name":"busybox","ecosystem":"Alpaquita:23","purl":"pkg:apk/alpaquita/busybox?arch=source&distro=23"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"1.35.0-r29"},{"fixed":"1.35.0-r41"}]}],"database_specific":{"source":"https://github.com/bell-sw/osv-database/blob/master/BELL-CVE/BELL-CVE-2026-38754.json"}},{"package":{"name":"busybox","ecosystem":"Alpaquita:25","purl":"pkg:apk/alpaquita/busybox?arch=source&distro=25"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"1.37.0-r20"},{"fixed":"1.37.0-r28"}]}],"database_specific":{"source":"https://github.com/bell-sw/osv-database/blob/master/BELL-CVE/BELL-CVE-2026-38754.json"}},{"package":{"name":"busybox","ecosystem":"Alpaquita:stream","purl":"pkg:apk/alpaquita/busybox?arch=source&distro=stream"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"1.36.1-r1"},{"fixed":"1.38.0-r1"}]}],"database_specific":{"source":"https://github.com/bell-sw/osv-database/blob/master/BELL-CVE/BELL-CVE-2026-38754.json"}},{"package":{"name":"busybox","ecosystem":"BellSoft Hardened Containers:23","purl":"pkg:apk/bellsoft-hardened-containers/busybox?arch=source&distro=23"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"1.35.0-r29"},{"fixed":"1.35.0-r41"}]}],"database_specific":{"source":"https://github.com/bell-sw/osv-database/blob/master/BELL-CVE/BELL-CVE-2026-38754.json"}},{"package":{"name":"busybox","ecosystem":"BellSoft Hardened Containers:25","purl":"pkg:apk/bellsoft-hardened-containers/busybox?arch=source&distro=25"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"1.37.0-r20"},{"fixed":"1.37.0-r28"}]}],"database_specific":{"source":"https://github.com/bell-sw/osv-database/blob/master/BELL-CVE/BELL-CVE-2026-38754.json"}},{"package":{"name":"busybox","ecosystem":"BellSoft Hardened Containers:stream","purl":"pkg:apk/bellsoft-hardened-containers/busybox?arch=source&distro=stream"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"1.36.1-r1"},{"fixed":"1.38.0-r1"}]}],"database_specific":{"source":"https://github.com/bell-sw/osv-database/blob/master/BELL-CVE/BELL-CVE-2026-38754.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L"}]}