Description
Buffer overflow in tar 1.14 through 1.15.90 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute code via unspecified vectors involving PAX extended headers.
CVSS vector
AV:N/AC:H/C:P/I:P/A:PExploitability: 4.9 | Impact: 6.4 Affected Packages2 packages
🔴Vulnerability Details
3GHSAGHSA-v2qx-rhmh-m93w: Buffer overflow in tar 1↗2022-05-01 ▶ CVEListCVE-2006-0300: Buffer overflow in tar 1↗2006-02-24 ▶ OSVCVE-2006-0300: Buffer overflow in tar 1↗2006-02-24 ▶ 💥Exploits & PoCs
2Exploit-DBApple iCal 3.0.1 - 'COUNT' Integer Overflow↗2008-04-21 ▶ Exploit-DBApple iCal 3.0.1 - 'TRIGGER' Denial of Service↗2008-04-21 ▶ 📋Vendor Advisories
3Ubuntutar vulnerability↗2006-02-23 ▶ DebianCVE-2006-0300: dpkg - Buffer overflow in tar 1.14 through 1.15.90 allows user-assisted attackers to ca...↗2006 ▶ 💬Community
4BugzillaCVE-2006-0300 security flaw↗2018-08-16 ▶ BugzillaMultiple tar issues (CVE-2005-1918, CVE-2006-0300)↗2006-03-02 ▶ BugzillaCVE-2006-0300 GNU tar heap overlfow bug↗2006-02-16 ▶ BugzillaCVE-2006-0300 GNU tar heap overlfow bug↗2006-02-16 ▶