CVE-2023-39804

Updated on 27 Mar 2024

Severity

6.2 Medium severity

Details

CVSS score
6.2
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Overview

About vulnerability

In GNU tar before 1.35, mishandled extension attributes in a PAX archive can lead to an application crash in xheader.c.

Details

Affected packages:
tar @ 1.29b-2 (+8 more)
In GNU tar before 1.35, mishandled extension attributes in a PAX archive can lead to an application crash in xheader.c.

Fixes