OESA-2021-1173
Dashboard / Vulnerabilities / OESA-2021-1173
Summary: tar security update
Details: GNU Tar provides the ability to create tar archives, as well as various other kinds of manipulation. For example, you can use Tar on previously created archives to extract files, to store additional files, or to update or list files which were already stored. Security Fix(es): A flaw was found in the src/list.c of tar 1.33 and earlier. This flaw allows an attacker who can submit a crafted input file to tar to cause uncontrolled consumption of memory. The highest threat from this vulnerability is to system availability.(CVE-2021-20193)
References: https://openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2021-1173, https://nvd.nist.gov/vuln/detail/CVE-2021-20193
Affected packages
Package
Name: tar
Purl: pkg:rpm/openEuler/tar&distro=openEuler-20.03-LTS-SP1
Affected ranges
Type: ECOSYSTEM
Events:
