Количество 37
Количество 37
GHSA-9gcr-gp5f-jw27
tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.
CVE-2025-58183
tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.
CVE-2025-58183
tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.
CVE-2025-58183
Unbounded allocation when parsing GNU sparse map in archive/tar
CVE-2025-58183
tar.Reader does not set a maximum size on the number of sparse region ...
RLSA-2025:23948
Moderate: grafana security update
RLSA-2025:23374
Moderate: container-tools:rhel8 security update
RLSA-2025:23326
Moderate: skopeo security update
RLSA-2025:23325
Moderate: podman security update
RLSA-2025:23295
Moderate: podman security update
RLSA-2025:23294
Moderate: skopeo security update
RLSA-2025:23088
Moderate: grafana security update
RLSA-2025:23087
Moderate: grafana security update
RLSA-2025:21816
Moderate: delve and golang security update
RLSA-2025:21815
Moderate: delve and golang security update
ELSA-2025-23948
ELSA-2025-23948: grafana security update (MODERATE)
ELSA-2025-23374
ELSA-2025-23374: container-tools:rhel8 security update (MODERATE)
ELSA-2025-23326
ELSA-2025-23326: skopeo security update (MODERATE)
ELSA-2025-23325
ELSA-2025-23325: podman security update (MODERATE)
ELSA-2025-23295
ELSA-2025-23295: podman security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-9gcr-gp5f-jw27 tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations. | CVSS3: 3.3 | 0% Низкий | 3 месяца назад | |
CVE-2025-58183 tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations. | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
CVE-2025-58183 tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations. | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
CVE-2025-58183 Unbounded allocation when parsing GNU sparse map in archive/tar | CVSS3: 5.5 | 0% Низкий | 3 месяца назад | |
CVE-2025-58183 tar.Reader does not set a maximum size on the number of sparse region ... | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
RLSA-2025:23948 Moderate: grafana security update | 0% Низкий | 24 дня назад | ||
RLSA-2025:23374 Moderate: container-tools:rhel8 security update | 0% Низкий | 28 дней назад | ||
RLSA-2025:23326 Moderate: skopeo security update | 0% Низкий | 28 дней назад | ||
RLSA-2025:23325 Moderate: podman security update | 0% Низкий | 28 дней назад | ||
RLSA-2025:23295 Moderate: podman security update | 0% Низкий | 27 дней назад | ||
RLSA-2025:23294 Moderate: skopeo security update | 0% Низкий | 27 дней назад | ||
RLSA-2025:23088 Moderate: grafana security update | 0% Низкий | около 1 месяца назад | ||
RLSA-2025:23087 Moderate: grafana security update | 0% Низкий | около 1 месяца назад | ||
RLSA-2025:21816 Moderate: delve and golang security update | 0% Низкий | около 2 месяцев назад | ||
RLSA-2025:21815 Moderate: delve and golang security update | 0% Низкий | около 2 месяцев назад | ||
ELSA-2025-23948 ELSA-2025-23948: grafana security update (MODERATE) | 25 дней назад | |||
ELSA-2025-23374 ELSA-2025-23374: container-tools:rhel8 security update (MODERATE) | 28 дней назад | |||
ELSA-2025-23326 ELSA-2025-23326: skopeo security update (MODERATE) | 29 дней назад | |||
ELSA-2025-23325 ELSA-2025-23325: podman security update (MODERATE) | 29 дней назад | |||
ELSA-2025-23295 ELSA-2025-23295: podman security update (MODERATE) | 29 дней назад |
Уязвимостей на страницу