Gnu

Tar

17 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.05%
  • Published 11.07.2025 00:00:00
  • Last modified 18.08.2025 04:15:36

GNU Tar through 1.35 allows file overwrite via directory traversal in crafted TAR archives, with a certain two-step process. First, the victim must extract an archive that contains a ../ symlink to a critical directory. Second, the victim must extrac...

  • EPSS 0.07%
  • Published 27.03.2024 04:15:08
  • Last modified 29.07.2025 23:31:32

In GNU tar before 1.35, mishandled extension attributes in a PAX archive can lead to an application crash in xheader.c.

Exploit
  • EPSS 0.04%
  • Published 30.01.2023 04:15:08
  • Last modified 27.03.2025 21:15:40

GNU Tar through 1.34 has a one-byte out-of-bounds read that results in use of uninitialized memory for a conditional jump. Exploitation to change the flow of control has not been demonstrated. The issue occurs in from_header in list.c via a V7 archiv...

  • EPSS 0.1%
  • Published 26.03.2021 17:15:12
  • Last modified 05.05.2025 14:15:04

A flaw was found in the src/list.c of tar 1.33 and earlier. This flaw allows an attacker who can submit a crafted input file to tar to cause uncontrolled consumption of memory. The highest threat from this vulnerability is to system availability.

  • EPSS 0.41%
  • Published 22.03.2019 08:29:00
  • Last modified 06.08.2025 22:15:28

pax_decode_header in sparse.c in GNU Tar before 1.32 had a NULL pointer dereference when parsing certain archives that have malformed extended headers.

Exploit
  • EPSS 0.02%
  • Published 26.12.2018 18:29:00
  • Last modified 21.11.2024 04:01:34

GNU Tar through 1.30, when --sparse is used, mishandles file shrinkage during read access, which allows local users to cause a denial of service (infinite read loop in sparse_dump_region in sparse.c) by modifying a file that is supposed to be archive...

Exploit
  • EPSS 12.59%
  • Published 09.12.2016 22:59:00
  • Last modified 06.08.2025 22:15:28

Directory traversal vulnerability in the safer_name_suffix function in GNU tar 1.14 through 1.29 might allow remote attackers to bypass an intended protection mechanism and write to arbitrary files via vectors related to improper sanitization of the ...

Exploit
  • EPSS 1.86%
  • Published 15.03.2010 13:28:25
  • Last modified 11.04.2025 00:51:21

Heap-based buffer overflow in the rmt_read__ function in lib/rtapelib.c in the rmt client functionality in GNU tar before 1.23 and GNU cpio before 2.11 allows remote rmt servers to cause a denial of service (memory corruption) or possibly execute arb...

  • EPSS 11.81%
  • Published 05.09.2007 01:17:00
  • Last modified 09.04.2025 00:30:58

Buffer overflow in the safer_name_suffix function in GNU tar has unspecified attack vectors and impact, resulting in a "crashing stack."

  • EPSS 11.05%
  • Published 25.08.2007 00:17:00
  • Last modified 09.04.2025 00:30:58

Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.