PT-2006-1374 · Gnu+1 · Tar+1
Jim Meyering
·
Published
2006-02-24
·
Updated
2024-06-15
·
CVE-2006-0300
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
tar versions 1.14 through 1.15.90
Description
The issue allows user-assisted attackers to cause a denial of service, potentially leading to application crashes, and may also allow the execution of code. This is achieved through unspecified vectors involving PAX extended headers.
Recommendations
For tar versions 1.14 through 1.15.90, update to a version outside of this range to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Red Hat
Tar