Vulnerability Name:

CVE-2006-0300 (CCN-24855)

Assigned:2005-06-17
Published:2005-06-17
Updated:2018-10-19
Summary:Buffer overflow in tar 1.14 through 1.15.90 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute code via unspecified vectors involving PAX extended headers.
CVSS v3 Severity:5.6 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): High
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:5.1 Medium (CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): High
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
5.1 Medium (CCN CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): High
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2006-0300

Source: CCN
Type: Mac OS X 10.4.9 and Security Update 2007-003
About the security content of Mac OS X 10.4.9 and Security Update 2007-003

Source: CONFIRM
Type: UNKNOWN
http://docs.info.apple.com/article.html?artnum=305214

Source: CCN
Type: Apple Security Update 2007-004
Security Update 2007-004

Source: CONFIRM
Type: UNKNOWN
http://docs.info.apple.com/article.html?artnum=305391

Source: APPLE
Type: UNKNOWN
APPLE-SA-2007-04-19

Source: APPLE
Type: UNKNOWN
APPLE-SA-2007-03-13

Source: MLIST
Type: UNKNOWN
[Bug-tar] 20060220 tar 1.15.90 released

Source: CCN
Type: RHSA-2006-0232
tar security update

Source: CCN
Type: SA18973
GNU Tar PAX Extended Headers Handling Buffer Overflow

Source: SECUNIA
Type: Vendor Advisory
18973

Source: SECUNIA
Type: Patch, Vendor Advisory
18976

Source: SECUNIA
Type: Patch, Vendor Advisory
18999

Source: SECUNIA
Type: UNKNOWN
19016

Source: SECUNIA
Type: UNKNOWN
19093

Source: SECUNIA
Type: UNKNOWN
19130

Source: SECUNIA
Type: UNKNOWN
19152

Source: SECUNIA
Type: UNKNOWN
19236

Source: CCN
Type: SA20042
Avaya S87X0/S8500/S8300 Tar PAX Extended Headers Buffer Overflow

Source: SECUNIA
Type: UNKNOWN
20042

Source: CCN
Type: SA24479
Mac OS X Security Update Fixes Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
24479

Source: CCN
Type: SA24966
Mac OS X Security Update Fixes Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
24966

Source: CCN
Type: SA31700
Sun Solaris 9 GNU Tar PAX Extended Headers Handling Buffer Overflow

Source: CCN
Type: SA31766
Sun Solaris 10 GNU Tar PAX Extended Headers Handling Buffer Overflow

Source: SREASON
Type: UNKNOWN
480

Source: SREASON
Type: UNKNOWN
543

Source: CCN
Type: SECTRACK ID: 1015705
Tar Buffer Overflow in Processing PAX Extended Headers May Let Remote Users Execute Arbitrary Code

Source: SECTRACK
Type: UNKNOWN
1015705

Source: SUNALERT
Type: UNKNOWN
241646

Source: CCN
Type: Sun Alert ID: 241646
Security Vulnerability in GNU tar May Lead to Arbitrary Code Execution or Denial of Service (DoS)

Source: CCN
Type: ASA-2006-095
tar security update (RHSA-2006-0232)

Source: CCN
Type: Apple Mac OS X Web site
Apple - Mac OS X

Source: DEBIAN
Type: UNKNOWN
DSA-987

Source: DEBIAN
Type: DSA-987
tar -- buffer overflow

Source: CCN
Type: GLSA-200603-06
GNU tar: Buffer overflow

Source: GENTOO
Type: UNKNOWN
GLSA-200603-06

Source: CCN
Type: GNU Tar Web site
Tar - GNU Project - Free Software Foundation (FSF)

Source: SUSE
Type: UNKNOWN
SUSE-SR:2006:005

Source: CCN
Type: OpenPKG-SA-2006.006
tar

Source: OPENPKG
Type: UNKNOWN
OpenPKG-SA-2006.006

Source: OSVDB
Type: Patch
23371

Source: CCN
Type: OSVDB ID: 23371
GNU tar PAX Extended Headers Handling Overflow

Source: REDHAT
Type: UNKNOWN
RHSA-2006:0232

Source: FEDORA
Type: UNKNOWN
FLSA:183571-2

Source: BID
Type: UNKNOWN
16764

Source: CCN
Type: BID-16764
GNU Tar Invalid Headers Buffer Overflow Vulnerability

Source: TRUSTIX
Type: Vendor Advisory
2006-0010

Source: CCN
Type: USN-257-1
tar vulnerability

Source: CERT
Type: US Government Resource
TA07-072A

Source: CERT
Type: US Government Resource
TA07-109A

Source: VUPEN
Type: UNKNOWN
ADV-2006-0684

Source: VUPEN
Type: UNKNOWN
ADV-2007-0930

Source: VUPEN
Type: UNKNOWN
ADV-2007-1470

Source: VUPEN
Type: UNKNOWN
ADV-2008-2518

Source: MANDRIVA
Type: Patch, Vendor Advisory
MDKSA-2006:046

Source: XF
Type: UNKNOWN
gnu-tar-pax-headers-bo(24855)

Source: XF
Type: UNKNOWN
gnu-tar-pax-headers-bo(24855)

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:5252

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:5978

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:5993

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:6094

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:9295

Source: UBUNTU
Type: UNKNOWN
USN-257-1

Source: SUSE
Type: SUSE-SR:2006:005
SUSE Security Summary Report

Vulnerable Configuration:Configuration 1:
  • cpe:/a:gnu:tar:1.14:*:*:*:*:*:*:*
  • OR cpe:/a:gnu:tar:1.14.1:*:*:*:*:*:*:*
  • OR cpe:/a:gnu:tar:1.15:*:*:*:*:*:*:*
  • OR cpe:/a:gnu:tar:1.15.1:*:*:*:*:*:*:*
  • OR cpe:/a:gnu:tar:1.15.90:*:*:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/o:redhat:enterprise_linux:4:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/o:redhat:enterprise_linux:4::as:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/o:redhat:enterprise_linux:4::desktop:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/o:redhat:enterprise_linux:4::es:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/o:redhat:enterprise_linux:4::ws:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:gnu:tar:1.15.1:*:*:*:*:*:*:*
  • OR cpe:/a:gnu:tar:1.14:*:*:*:*:*:*:*
  • OR cpe:/a:gnu:tar:1.14.1:*:*:*:*:*:*:*
  • OR cpe:/a:gnu:tar:1.15:*:*:*:*:*:*:*
  • OR cpe:/a:gnu:tar:1.15.90:*:*:*:*:*:*:*
  • AND
  • cpe:/a:openpkg:openpkg:current:*:*:*:*:*:*:*
  • OR cpe:/o:gentoo:linux:*:*:*:*:*:*:*:*
  • OR cpe:/o:sun:solaris:9::x86:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:10.1:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::as:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::desktop:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::ws:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:3.1:*:*:*:*:*:*:*
  • OR cpe:/o:sun:solaris:10::sparc:*:*:*:*:*
  • OR cpe:/o:sun:solaris:10::x86:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2006:*:*:*:*:*:*:*
  • OR cpe:/a:openpkg:openpkg:2.5:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:10.1::x86-64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2006::x86-64:*:*:*:*:*
  • OR cpe:/o:sun:solaris:9::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_01::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_02::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_13::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_19::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_22::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_39::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_47::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_64::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_01::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_02::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_13::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_19::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_22::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_39::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_47::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_64::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_03::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_04::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_05::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_06::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_07::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_08::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_09::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_10::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_11::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_12::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_14::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_15::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_16::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_18::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_20::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_21::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_24::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_25::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_26::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_27::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_28::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_29::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_31::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_32::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_33::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_34::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_35::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_37::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_41::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_43::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_44::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_45::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_48::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_50::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_53::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_54::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_56::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_58::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_59::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_60::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_62::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_65::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_68::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_69::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_72::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_75::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_76::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_78::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_17::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_23::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_30::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_36::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_38::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_42::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_46::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_49::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_51::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_52::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_55::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_57::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_61::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_63::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_66::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_67::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_70::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_71::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_73::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_74::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_77::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_79::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_03::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_04::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_05::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_06::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_07::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_15::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_08::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_14::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_11::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_17::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_12::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_09::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_16::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_10::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_21::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_20::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_27::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_26::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_25::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_24::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_23::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_18::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_28::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_33::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_34::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_35::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_36::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_32::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_37::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_31::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_30::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_29::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_40::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_41::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_42::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_43::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_44::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_38::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_45::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_46::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_48::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_55::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_54::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_50::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_57::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_49::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_56::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_52::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_51::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_53::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_67::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_66::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_59::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_65::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_58::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_61::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_63::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_60::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_62::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_71::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_68::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_72::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_77::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_70::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_74::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_73::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_76::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_69::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_75::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_78::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_79::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_80::sparc:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_80::x86:*:*:*:*:*
  • OR cpe:/o:sun:opensolaris:build_snv_40::x86:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:113480
    P
    tar-1.34-2.2 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:106877
    P
    tar-1.34-2.2 on GA media (Moderate)
    2021-10-01
    oval:org.mitre.oval:def:9295
    V
    Buffer overflow in tar 1.14 through 1.15.90 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute code via unspecified vectors involving PAX extended headers.
    2013-04-29
    oval:org.mitre.oval:def:5993
    V
    Security Vulnerability in GNU tar May Lead to Arbitrary Code Execution or Denial of Service (DoS)
    2009-06-15
    oval:org.mitre.oval:def:6094
    V
    Security Vulnerability in GNU tar May Lead to Arbitrary Code Execution or Denial of Service (DoS)
    2009-06-15
    oval:org.mitre.oval:def:5252
    V
    Security Vulnerability in GNU tar May Lead to Arbitrary Code Execution or Denial of Service (DoS)
    2009-06-15
    oval:org.mitre.oval:def:5978
    V
    Security Vulnerability in GNU tar May Lead to Arbitrary Code Execution or Denial of Service (DoS)
    2009-06-15
    oval:org.debian:def:987
    V
    buffer overflow
    2006-03-07
    oval:com.redhat.rhsa:def:20060232
    P
    RHSA-2006:0232: tar security update (Moderate)
    2006-03-01
    BACK
    gnu tar 1.14
    gnu tar 1.14.1
    gnu tar 1.15
    gnu tar 1.15.1
    gnu tar 1.15.90
    gnu tar 1.15.1
    gnu tar 1.14
    gnu tar 1.14.1
    gnu tar 1.15
    gnu tar 1.15.90
    openpkg openpkg current
    gentoo linux *
    sun solaris 9
    mandrakesoft mandrake linux 10.1
    redhat enterprise linux 4
    redhat enterprise linux 4
    redhat enterprise linux 4
    redhat enterprise linux 4
    debian debian linux 3.1
    sun solaris 10
    sun solaris 10
    mandrakesoft mandrake linux 2006
    openpkg openpkg 2.5
    mandrakesoft mandrake linux 10.1
    mandrakesoft mandrake linux 2006
    sun solaris 9
    sun opensolaris build_snv_01
    sun opensolaris build_snv_02
    sun opensolaris build_snv_13
    sun opensolaris build_snv_19
    sun opensolaris build_snv_22
    sun opensolaris build_snv_39
    sun opensolaris build_snv_47
    sun opensolaris build_snv_64
    sun opensolaris build_snv_01
    sun opensolaris build_snv_02
    sun opensolaris build_snv_13
    sun opensolaris build_snv_19
    sun opensolaris build_snv_22
    sun opensolaris build_snv_39
    sun opensolaris build_snv_47
    sun opensolaris build_snv_64
    sun opensolaris build_snv_03
    sun opensolaris build_snv_04
    sun opensolaris build_snv_05
    sun opensolaris build_snv_06
    sun opensolaris build_snv_07
    sun opensolaris build_snv_08
    sun opensolaris build_snv_09
    sun opensolaris build_snv_10
    sun opensolaris build_snv_11
    sun opensolaris build_snv_12
    sun opensolaris build_snv_14
    sun opensolaris build_snv_15
    sun opensolaris build_snv_16
    sun opensolaris build_snv_18
    sun opensolaris build_snv_20
    sun opensolaris build_snv_21
    sun opensolaris build_snv_24
    sun opensolaris build_snv_25
    sun opensolaris build_snv_26
    sun opensolaris build_snv_27
    sun opensolaris build_snv_28
    sun opensolaris build_snv_29
    sun opensolaris build_snv_31
    sun opensolaris build_snv_32
    sun opensolaris build_snv_33
    sun opensolaris build_snv_34
    sun opensolaris build_snv_35
    sun opensolaris build_snv_37
    sun opensolaris build_snv_41
    sun opensolaris build_snv_43
    sun opensolaris build_snv_44
    sun opensolaris build_snv_45
    sun opensolaris build_snv_48
    sun opensolaris build_snv_50
    sun opensolaris build_snv_53
    sun opensolaris build_snv_54
    sun opensolaris build_snv_56
    sun opensolaris build_snv_58
    sun opensolaris build_snv_59
    sun opensolaris build_snv_60
    sun opensolaris build_snv_62
    sun opensolaris build_snv_65
    sun opensolaris build_snv_68
    sun opensolaris build_snv_69
    sun opensolaris build_snv_72
    sun opensolaris build_snv_75
    sun opensolaris build_snv_76
    sun opensolaris build_snv_78
    sun opensolaris build_snv_17
    sun opensolaris build_snv_23
    sun opensolaris build_snv_30
    sun opensolaris build_snv_36
    sun opensolaris build_snv_38
    sun opensolaris build_snv_42
    sun opensolaris build_snv_46
    sun opensolaris build_snv_49
    sun opensolaris build_snv_51
    sun opensolaris build_snv_52
    sun opensolaris build_snv_55
    sun opensolaris build_snv_57
    sun opensolaris build_snv_61
    sun opensolaris build_snv_63
    sun opensolaris build_snv_66
    sun opensolaris build_snv_67
    sun opensolaris build_snv_70
    sun opensolaris build_snv_71
    sun opensolaris build_snv_73
    sun opensolaris build_snv_74
    sun opensolaris build_snv_77
    sun opensolaris build_snv_79
    sun opensolaris build_snv_03
    sun opensolaris build_snv_04
    sun opensolaris build_snv_05
    sun opensolaris build_snv_06
    sun opensolaris build_snv_07
    sun opensolaris build_snv_15
    sun opensolaris build_snv_08
    sun opensolaris build_snv_14
    sun opensolaris build_snv_11
    sun opensolaris build_snv_17
    sun opensolaris build_snv_12
    sun opensolaris build_snv_09
    sun opensolaris build_snv_16
    sun opensolaris build_snv_10
    sun opensolaris build_snv_21
    sun opensolaris build_snv_20
    sun opensolaris build_snv_27
    sun opensolaris build_snv_26
    sun opensolaris build_snv_25
    sun opensolaris build_snv_24
    sun opensolaris build_snv_23
    sun opensolaris build_snv_18
    sun opensolaris build_snv_28
    sun opensolaris build_snv_33
    sun opensolaris build_snv_34
    sun opensolaris build_snv_35
    sun opensolaris build_snv_36
    sun opensolaris build_snv_32
    sun opensolaris build_snv_37
    sun opensolaris build_snv_31
    sun opensolaris build_snv_30
    sun opensolaris build_snv_29
    sun opensolaris build_snv_40
    sun opensolaris build_snv_41
    sun opensolaris build_snv_42
    sun opensolaris build_snv_43
    sun opensolaris build_snv_44
    sun opensolaris build_snv_38
    sun opensolaris build_snv_45
    sun opensolaris build_snv_46
    sun opensolaris build_snv_48
    sun opensolaris build_snv_55
    sun opensolaris build_snv_54
    sun opensolaris build_snv_50
    sun opensolaris build_snv_57
    sun opensolaris build_snv_49
    sun opensolaris build_snv_56
    sun opensolaris build_snv_52
    sun opensolaris build_snv_51
    sun opensolaris build_snv_53
    sun opensolaris build_snv_67
    sun opensolaris build_snv_66
    sun opensolaris build_snv_59
    sun opensolaris build_snv_65
    sun opensolaris build_snv_58
    sun opensolaris build_snv_61
    sun opensolaris build_snv_63
    sun opensolaris build_snv_60
    sun opensolaris build_snv_62
    sun opensolaris build_snv_71
    sun opensolaris build_snv_68
    sun opensolaris build_snv_72
    sun opensolaris build_snv_77
    sun opensolaris build_snv_70
    sun opensolaris build_snv_74
    sun opensolaris build_snv_73
    sun opensolaris build_snv_76
    sun opensolaris build_snv_69
    sun opensolaris build_snv_75
    sun opensolaris build_snv_78
    sun opensolaris build_snv_79
    sun opensolaris build_snv_80
    sun opensolaris build_snv_80
    sun opensolaris build_snv_40