Количество 46
Количество 46
CVE-2025-58183
tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.
CVE-2025-58183
tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.
CVE-2025-58183
Unbounded allocation when parsing GNU sparse map in archive/tar
CVE-2025-58183
tar.Reader does not set a maximum size on the number of sparse region ...
RLSA-2025:23948
Moderate: grafana security update
RLSA-2025:23374
Moderate: container-tools:rhel8 security update
RLSA-2025:23326
Moderate: skopeo security update
RLSA-2025:23325
Moderate: podman security update
RLSA-2025:23295
Moderate: podman security update
RLSA-2025:23294
Moderate: skopeo security update
RLSA-2025:23088
Moderate: grafana security update
RLSA-2025:23087
Moderate: grafana security update
RLSA-2025:21816
Moderate: delve and golang security update
RLSA-2025:21815
Moderate: delve and golang security update
GHSA-9gcr-gp5f-jw27
tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.
ELSA-2026-50076
ELSA-2026-50076: image-builder security update (MODERATE)
ELSA-2026-1838
ELSA-2026-1838: image-builder security update (MODERATE)
ELSA-2026-1837
ELSA-2026-1837: osbuild-composer security update (MODERATE)
ELSA-2026-1381
ELSA-2026-1381: osbuild-composer security update (MODERATE)
ELSA-2026-1380
ELSA-2026-1380: osbuild-composer security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-58183 tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations. | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
CVE-2025-58183 tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations. | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
CVE-2025-58183 Unbounded allocation when parsing GNU sparse map in archive/tar | CVSS3: 5.5 | 0% Низкий | 3 месяца назад | |
CVE-2025-58183 tar.Reader does not set a maximum size on the number of sparse region ... | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
RLSA-2025:23948 Moderate: grafana security update | 0% Низкий | около 2 месяцев назад | ||
RLSA-2025:23374 Moderate: container-tools:rhel8 security update | 0% Низкий | около 2 месяцев назад | ||
RLSA-2025:23326 Moderate: skopeo security update | 0% Низкий | около 2 месяцев назад | ||
RLSA-2025:23325 Moderate: podman security update | 0% Низкий | около 2 месяцев назад | ||
RLSA-2025:23295 Moderate: podman security update | 0% Низкий | около 2 месяцев назад | ||
RLSA-2025:23294 Moderate: skopeo security update | 0% Низкий | около 2 месяцев назад | ||
RLSA-2025:23088 Moderate: grafana security update | 0% Низкий | около 2 месяцев назад | ||
RLSA-2025:23087 Moderate: grafana security update | 0% Низкий | 2 месяца назад | ||
RLSA-2025:21816 Moderate: delve and golang security update | 0% Низкий | 2 месяца назад | ||
RLSA-2025:21815 Moderate: delve and golang security update | 0% Низкий | 3 месяца назад | ||
GHSA-9gcr-gp5f-jw27 tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations. | CVSS3: 3.3 | 0% Низкий | 3 месяца назад | |
ELSA-2026-50076 ELSA-2026-50076: image-builder security update (MODERATE) | 12 дней назад | |||
ELSA-2026-1838 ELSA-2026-1838: image-builder security update (MODERATE) | 5 дней назад | |||
ELSA-2026-1837 ELSA-2026-1837: osbuild-composer security update (MODERATE) | 6 дней назад | |||
ELSA-2026-1381 ELSA-2026-1381: osbuild-composer security update (MODERATE) | 13 дней назад | |||
ELSA-2026-1380 ELSA-2026-1380: osbuild-composer security update (MODERATE) | 13 дней назад |
Уязвимостей на страницу