PT-2026-31065 · Go Standard Library · Archive Tar

Colin Walters

+2

·

Published

2026-04-08

·

Updated

2026-04-08

·

CVE-2026-32288

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large number of sparse regions encoded in the "old GNU sparse map" format.

Related Identifiers

CVE-2026-32288

Affected Products

Archive Tar