GNU tar vulnerability could lead to application crash

CVE-2023-39804
Currently unrated 🤨

Key Information

Vendor
GNU
Vendor
CVE Published:
27 March 2024

Summary

In GNU tar before 1.35, mishandled extension attributes in a PAX archive can lead to an application crash in xheader.c.

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database
.