Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-0959

Опубликовано: 28 фев. 2023
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2023-0959: tar security update (MODERATE)

[2:1.34-6]

  • Fix CVE-2022-48303
  • Resolves: CVE-2022-48303

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

tar

1.34-6.el9_1

Oracle Linux x86_64

tar

1.34-6.el9_1

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 2 лет назад

GNU Tar through 1.34 has a one-byte out-of-bounds read that results in use of uninitialized memory for a conditional jump. Exploitation to change the flow of control has not been demonstrated. The issue occurs in from_header in list.c via a V7 archive in which mtime has approximately 11 whitespace characters.

CVSS3: 5.5
redhat
больше 3 лет назад

GNU Tar through 1.34 has a one-byte out-of-bounds read that results in use of uninitialized memory for a conditional jump. Exploitation to change the flow of control has not been demonstrated. The issue occurs in from_header in list.c via a V7 archive in which mtime has approximately 11 whitespace characters.

CVSS3: 5.5
nvd
больше 2 лет назад

GNU Tar through 1.34 has a one-byte out-of-bounds read that results in use of uninitialized memory for a conditional jump. Exploitation to change the flow of control has not been demonstrated. The issue occurs in from_header in list.c via a V7 archive in which mtime has approximately 11 whitespace characters.

CVSS3: 5.5
msrc
9 месяцев назад

Описание отсутствует

CVSS3: 5.5
debian
больше 2 лет назад

GNU Tar through 1.34 has a one-byte out-of-bounds read that results in ...