Total vulnerabilities in the database
An attacker who submits a crafted tar file with size in header struct being 0 may be able to trigger an calling of malloc(0) for a variable gnu_longname, causing an out-of-bounds read.
Software | From | Fixed in |
---|---|---|
feep / libtar | - | 1.2.21 |
fedoraproject / fedora | 35 | 35.x |
fedoraproject / fedora | 36 | 36.x |
fedoraproject / fedora | 37 | 37.x |
openatom / openeuler | 20.03-sp3 | 20.03-sp3.x |
openatom / openeuler | 20.03-sp1 | 20.03-sp1.x |
openatom / openeuler | 22.03 | 22.03.x |