Описание
In GNU tar before 1.35, mishandled extension attributes in a PAX archive can lead to an application crash in xheader.c.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
tar | fixed | 1.34+dfsg-1.3 | package | |
tar | fixed | 1.34+dfsg-1.2+deb12u1 | bookworm | package |
tar | fixed | 1.34+dfsg-1+deb11u1 | bullseye | package |
Примечания
Fixed by: https://git.savannah.gnu.org/cgit/tar.git/commit/?id=a339f05cd269013fa133d2f148d73f6f7d4247e4 (v1.35)
EPSS
Процентиль: 9%
0.00036
Низкий
Связанные уязвимости
CVSS3: 6.2
ubuntu
около 1 года назад
In GNU tar before 1.35, mishandled extension attributes in a PAX archive can lead to an application crash in xheader.c.
CVSS3: 3.3
redhat
больше 1 года назад
In GNU tar before 1.35, mishandled extension attributes in a PAX archive can lead to an application crash in xheader.c.
CVSS3: 6.2
nvd
около 1 года назад
In GNU tar before 1.35, mishandled extension attributes in a PAX archive can lead to an application crash in xheader.c.
EPSS
Процентиль: 9%
0.00036
Низкий