Total vulnerabilities in the database
Multiple integer overflows in the th_read function in lib/block.c in libtar before 1.2.20 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) name or (2) link in an archive, which triggers a heap-based buffer overflow.
Software | From | Fixed in |
---|---|---|
redhat / enterprise_linux | 6.0 | 6.0.x |
feep / libtar | 1.2.14 | 1.2.14.x |
feep / libtar | 1.2.17 | 1.2.17.x |
feep / libtar | - | 1.2.19.x |
feep / libtar | 1.2.13 | 1.2.13.x |
feep / libtar | 1.2.11 | 1.2.11.x |
feep / libtar | 1.2.15 | 1.2.15.x |
feep / libtar | 1.2.18 | 1.2.18.x |
feep / libtar | 1.2.16 | 1.2.16.x |