CVE Vulnerabilities

CVE-2023-39804

Published: Mar 27, 2024 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
3.3 LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Ubuntu
MEDIUM

In GNU tar before 1.35, mishandled extension attributes in a PAX archive can lead to an application crash in xheader.c.

Affected Software

Name Vendor Start Version End Version
Tar Ubuntu bionic *
Tar Ubuntu devel *
Tar Ubuntu esm-infra/bionic *
Tar Ubuntu esm-infra/xenial *
Tar Ubuntu focal *
Tar Ubuntu jammy *
Tar Ubuntu lunar *
Tar Ubuntu mantic *
Tar Ubuntu trusty *
Tar Ubuntu trusty/esm *
Tar Ubuntu upstream *
Tar Ubuntu xenial *

References