Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2021:0975-1

Опубликовано: 29 мар. 2021
Источник: suse-cvrf

Описание

Security update for tar

This update for tar fixes the following issues:

CVE-2021-20193: Memory leak in read_header() in list.c (bsc#1181131)

Список пакетов

Image SLES12-SP4-Azure-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP4-EC2-HVM-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP4-GCE-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP4-SAP-Azure
tar-1.27.1-15.9.1
Image SLES12-SP4-SAP-Azure-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP4-SAP-Azure-LI-BYOS-Production
tar-1.27.1-15.9.1
Image SLES12-SP4-SAP-Azure-VLI-BYOS-Production
tar-1.27.1-15.9.1
Image SLES12-SP4-SAP-EC2-HVM
tar-1.27.1-15.9.1
Image SLES12-SP4-SAP-EC2-HVM-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP4-SAP-GCE
tar-1.27.1-15.9.1
Image SLES12-SP4-SAP-GCE-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP5-Azure-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP5-Azure-Basic-On-Demand
tar-1.27.1-15.9.1
Image SLES12-SP5-Azure-HPC-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP5-Azure-HPC-On-Demand
tar-1.27.1-15.9.1
Image SLES12-SP5-Azure-SAP-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP5-Azure-SAP-On-Demand
tar-1.27.1-15.9.1
Image SLES12-SP5-Azure-Standard-On-Demand
tar-1.27.1-15.9.1
Image SLES12-SP5-EC2-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP5-EC2-ECS-On-Demand
tar-1.27.1-15.9.1
Image SLES12-SP5-EC2-On-Demand
tar-1.27.1-15.9.1
Image SLES12-SP5-EC2-SAP-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP5-EC2-SAP-On-Demand
tar-1.27.1-15.9.1
Image SLES12-SP5-GCE-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP5-GCE-On-Demand
tar-1.27.1-15.9.1
Image SLES12-SP5-GCE-SAP-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP5-GCE-SAP-On-Demand
tar-1.27.1-15.9.1
Image SLES12-SP5-OCI-BYOS-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP5-OCI-BYOS-SAP-BYOS
tar-1.27.1-15.9.1
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production
tar-1.27.1-15.9.1
Image SLES12-SP5-SAP-Azure-VLI-BYOS-Production
tar-1.27.1-15.9.1
SUSE Linux Enterprise Server 12 SP5
tar-1.27.1-15.9.1
tar-lang-1.27.1-15.9.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
tar-1.27.1-15.9.1
tar-lang-1.27.1-15.9.1

Описание

A flaw was found in the src/list.c of tar 1.33 and earlier. This flaw allows an attacker who can submit a crafted input file to tar to cause uncontrolled consumption of memory. The highest threat from this vulnerability is to system availability.


Затронутые продукты
Image SLES12-SP4-Azure-BYOS:tar-1.27.1-15.9.1
Image SLES12-SP4-EC2-HVM-BYOS:tar-1.27.1-15.9.1
Image SLES12-SP4-GCE-BYOS:tar-1.27.1-15.9.1
Image SLES12-SP4-SAP-Azure-BYOS:tar-1.27.1-15.9.1

Ссылки