Vulnerability Name:

CVE-2018-20482 (CCN-154792)

Assigned:2018-12-26
Published:2018-12-26
Updated:2021-11-30
Summary:GNU Tar through 1.30, when --sparse is used, mishandles file shrinkage during read access, which allows local users to cause a denial of service (infinite read loop in sparse_dump_region in sparse.c) by modifying a file that is supposed to be archived by a different user's process (e.g., a system backup running as root).
CVSS v3 Severity:4.7 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H)
4.2 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:U/RC:R)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): High
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
3.3 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L)
2.9 Low (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:U/RL:U/RC:R)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:1.9 Low (CVSS v2 Vector: AV:L/AC:M/Au:N/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
1.7 Low (CCN CVSS v2 Vector: AV:L/AC:L/Au:S/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
Vulnerability Type:CWE-835
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2018-20482

Source: MISC
Type: Patch, Third Party Advisory
http://git.savannah.gnu.org/cgit/tar.git/commit/?id=c15c42ccd1e2377945fd0414eca1a49294bff454

Source: MISC
Type: Third Party Advisory
http://lists.gnu.org/archive/html/bug-tar/2018-12/msg00023.html

Source: SUSE
Type: Mailing List, Third Party Advisory
openSUSE-SU-2019:1237

Source: BID
Type: Third Party Advisory, VDB Entry
106354

Source: XF
Type: UNKNOWN
gnutar-cve201820482-dos(154792)

Source: MLIST
Type: Mailing List, Third Party Advisory
[debian-lts-announce] 20181231 [SECURITY] [DLA 1623-1] tar security update

Source: MLIST
Type: Mailing List, Third Party Advisory
[debian-lts-announce] 20211128 [SECURITY] [DLA 2830-1] tar security update

Source: MISC
Type: Exploit, Third Party Advisory
https://news.ycombinator.com/item?id=18745431

Source: GENTOO
Type: Third Party Advisory
GLSA-201903-05

Source: MISC
Type: Patch, Third Party Advisory
https://twitter.com/thatcks/status/1076166645708668928

Source: MISC
Type: Patch, Third Party Advisory
https://utcc.utoronto.ca/~cks/space/blog/sysadmin/TarFindingTruncateBug

Source: CCN
Type: GNU Web site
Tar

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2018-20482

Vulnerable Configuration:Configuration 1:
  • cpe:/a:gnu:tar:*:*:*:*:*:*:*:* (Version <= 1.30)

  • Configuration 2:
  • cpe:/o:debian:debian_linux:8.0:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:9.0:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/o:opensuse:leap:15.0:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:gnu:tar:1.30:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:201820482
    V
    CVE-2018-20482
    2023-06-22
    oval:org.opensuse.security:def:7815
    P
    tar-1.34-150000.3.31.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:575
    P
    Security update for xorg-x11-server (Important)
    2022-07-12
    oval:org.opensuse.security:def:3387
    P
    u-boot-rpi3-2019.01-3.7 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3209
    P
    libmms0-0.6.2-15.8 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3399
    P
    xalan-j2-2.7.0-264.133 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:94839
    P
    tar-1.34-150000.3.12.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:318
    P
    tar-1.30-3.6.1 on GA media (Moderate)
    2022-06-13
    oval:org.opensuse.security:def:367
    P
    tar-1.34-150000.3.12.1 on GA media (Moderate)
    2022-06-10
    oval:org.opensuse.security:def:901
    P
    Security update for fribidi (Moderate)
    2022-05-25
    oval:org.opensuse.security:def:93451
    P
    (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:880
    P
    Security update for tar (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:94232
    P
    (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:42376
    P
    Security update for tar (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:119089
    P
    Security update for tar (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:93605
    P
    (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:94441
    P
    (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:93133
    P
    (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:93806
    P
    (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:42181
    P
    Security update for tar (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:93293
    P
    (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:94020
    P
    (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:42277
    P
    Security update for tar (Moderate)
    2022-05-05
    oval:org.opensuse.security:def:101620
    P
    Security update for tar (Moderate) (in QA)
    2022-04-12
    oval:org.opensuse.security:def:113480
    P
    tar-1.34-2.2 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:61116
    P
    Security update for openexr (Important)
    2022-01-12
    oval:org.opensuse.security:def:24050
    P
    Security update for libsndfile (Important)
    2022-01-05
    oval:org.opensuse.security:def:31326
    P
    Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3) (Important)
    2021-12-14
    oval:org.opensuse.security:def:30272
    P
    Security update for java-1_8_0-openjdk (Important)
    2021-11-23
    oval:org.opensuse.security:def:23708
    P
    Security update for the Linux Kernel (Live Patch 40 for SLE 12 SP3) (Important)
    2021-11-19
    oval:org.opensuse.security:def:1487
    P
    Security update for ffmpeg (Moderate)
    2021-10-26
    oval:org.opensuse.security:def:100670
    P
    (Important)
    2021-10-25
    oval:org.opensuse.security:def:35272
    P
    Security update for the Linux Kernel (Important)
    2021-10-12
    oval:org.opensuse.security:def:29430
    P
    Security update for glibc (Moderate)
    2021-10-06
    oval:org.opensuse.security:def:106877
    P
    tar-1.34-2.2 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:71405
    P
    tar-1.30-3.3.2 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:71175
    P
    elfutils-0.168-2.164 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:103474
    P
    tar-1.30-3.3.2 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61575
    P
    libspice-client-glib-2_0-8-0.35-1.48 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:96784
    P
    tar-1.30-3.3.2 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:2125
    P
    libfreebl3-hmac-3.41.1-3.13.1 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:89819
    P
    tar-1.30-3.3.2 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61664
    P
    tar-1.30-3.3.2 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:45109
    P
    Security update for openssl (Low)
    2021-09-18
    oval:org.opensuse.security:def:23962
    P
    Security update for libesmtp (Important)
    2021-09-02
    oval:org.opensuse.security:def:23662
    P
    Security update for bind (Moderate)
    2021-08-30
    oval:org.opensuse.security:def:48019
    P
    git-core-2.12.3-27.17.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48333
    P
    update-alternatives-1.18.4-14.216 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47008
    P
    libarchive13-3.1.2-22.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48324
    P
    tftp-5.2-11.6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48157
    P
    libnghttp2-14-1.7.1-1.84 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47097
    P
    libxerces-c-3_1-3.1.1-12.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47232
    P
    cups-filters-1.0.58-17.11 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47557
    P
    apache2-mod_perl-2.0.8-11.43 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47797
    P
    libtiff5-32bit-4.0.9-44.24.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48095
    P
    libasan2-32bit-5.3.1+r233831-12.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47039
    P
    libjson-c2-0.11-2.15 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48222
    P
    libwavpack1-4.60.99-5.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47746
    P
    libmysqlclient18-10.0.35-1.7 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48005
    P
    fetchmail-6.3.26-12.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48140
    P
    liblcms1-1.19-17.28 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47096
    P
    libxcb-dri2-0-1.10-3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48253
    P
    p7zip-9.20.1-7.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:46924
    P
    dbus-1-glib-0.100.2-3.58 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47111
    P
    openssh-7.2p2-55.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47425
    P
    libvdpau1-1.1.1-6.73 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47649
    P
    jakarta-taglibs-standard-1.1.1-255.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48011
    P
    fuse-2.9.3-6.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47108
    P
    ntp-4.2.8p8-14.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48004
    P
    expat-2.1.0-21.9.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:46945
    P
    gdk-pixbuf-lang-2.34.0-16.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47799
    P
    libudisks2-0-2.1.3-1.13 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:46884
    P
    accountsservice-0.6.42-14.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:62098
    P
    gtk2-devel-2.24.32+67-2.28 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62737
    P
    emacs-x11-25.3-3.6.51 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:101094
    P
    tar-1.30-3.6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62824
    P
    ppp-2.4.7-5.3.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62775
    P
    libass-devel-0.14.0-3.3.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62336
    P
    tar-1.30-3.6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:72077
    P
    tar-1.30-3.6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:1247
    P
    tar-1.30-3.6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:31239
    P
    Security update for dbus-1 (Important)
    2021-08-02
    oval:org.opensuse.security:def:34491
    P
    Security update for qemu (Important)
    2021-07-22
    oval:org.opensuse.security:def:30106
    P
    Security update for linuxptp (Important)
    2021-07-21
    oval:org.opensuse.security:def:33683
    P
    Security update for libsolv (Important)
    2021-06-28
    oval:org.opensuse.security:def:31648
    P
    Security update for openexr (Important)
    2021-06-24
    oval:org.opensuse.security:def:30095
    P
    Security update for xterm (Important)
    2021-06-18
    oval:org.opensuse.security:def:45615
    P
    Security update for apache2 (Important)
    2021-06-17
    oval:org.opensuse.security:def:30094
    P
    Security update for apache2 (Important)
    2021-06-17
    oval:org.opensuse.security:def:48557
    P
    libtasn1-3.7-11.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48919
    P
    libIlmImf-Imf_2_1-21-32bit-2.1.0-6.3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:61304
    P
    libxcb-composite0-1.13-1.11 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46873
    P
    xinetd-2.3.15-7.7 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:71062
    P
    openvpn-2.4.3-3.39 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36421
    P
    imlib-1.9.14-401.20 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46449
    P
    krb5-appl-clients-1.0.3-1.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46802
    P
    openvpn-2.3.8-16.3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:23592
    P
    Security update for libX11 (Important)
    2021-06-08
    oval:org.opensuse.security:def:23915
    P
    Security update for libX11 (Important)
    2021-06-08
    oval:org.opensuse.security:def:48465
    P
    libXext6-1.3.2-3.60 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48705
    P
    rhythmbox-3.0.2-1.92 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:61138
    P
    clamav-0.100.0-1.17 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48962
    P
    python-devel-2.7.13-28.11.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:32939
    P
    Security update for qemu (Important)
    2021-06-08
    oval:org.opensuse.security:def:36379
    P
    boost-devel-1.36.0-12.6.49 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46591
    P
    w3m-0.5.3-153.134 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:62874
    P
    perl-Tk-devel-804.034-1.44 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:93957
    P
    (Important)
    2021-06-03
    oval:org.opensuse.security:def:31182
    P
    Security update for libwebp (Critical)
    2021-06-02
    oval:org.opensuse.security:def:34434
    P
    Security update for graphviz (Critical)
    2021-05-19
    oval:org.opensuse.security:def:33639
    P
    Security update for libnettle (Important)
    2021-04-28
    oval:org.opensuse.security:def:30180
    P
    Security update for spamassassin (Important)
    2021-04-12
    oval:org.opensuse.security:def:23773
    P
    Security update for MozillaFirefox (Important)
    2021-03-31
    oval:org.opensuse.security:def:61115
    P
    Security update for evolution-data-server (Moderate)
    2021-03-19
    oval:org.opensuse.security:def:67822
    P
    Security update for the Linux Kernel (Live Patch 18 for SLE 15) (Important)
    2021-03-17
    oval:org.opensuse.security:def:29484
    P
    Security update for python (Moderate)
    2021-03-16
    oval:org.opensuse.security:def:24038
    P
    Security update for python (Moderate)
    2021-03-16
    oval:org.opensuse.security:def:69993
    P
    Security update for MozillaFirefox (Important)
    2021-03-02
    oval:org.opensuse.security:def:33074
    P
    Security update for jasper (Important)
    2021-02-16
    oval:org.opensuse.security:def:34580
    P
    Security update for the Linux Kernel (Important)
    2021-02-09
    oval:org.opensuse.security:def:31692
    P
    Security update for python3 (Important)
    2021-02-08
    oval:org.opensuse.security:def:69888
    P
    Security update for go1.15 (Moderate)
    2021-01-28
    oval:org.opensuse.security:def:28919
    P
    Security update for ImageMagick (Important)
    2021-01-22
    oval:org.opensuse.security:def:64475
    P
    Security update for open-iscsi (Important)
    2021-01-14
    oval:org.opensuse.security:def:31626
    P
    Security update for dovecot22 (Important)
    2021-01-04
    oval:org.opensuse.security:def:34336
    P
    Security update for openssh (Moderate)
    2020-12-16
    oval:org.opensuse.security:def:31090
    P
    Security update for the Linux Kernel (Live Patch 33 for SLE 12 SP3) (Important)
    2020-12-07
    oval:org.opensuse.security:def:62645
    P
    ibus-1.5.22-2.21 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:116894
    P
    tar-1.30-3.3.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61766
    P
    hardlink-1.0+git.e66999f-1.25 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62544
    P
    libXvnc-devel-1.9.0-17.32 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35634
    P
    qt3-3.3.8b-88.21 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:49016
    P
    libmikmod3-3.2.0-4.59 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35741
    P
    libcap-progs-2.11-2.17.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61990
    P
    tar-1.30-3.3.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35630
    P
    perl-spamassassin-3.2.5-26.22.18 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35581
    P
    libadns1-1.4-73.21 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:71731
    P
    tar-1.30-3.3.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:49003
    P
    libFLAC++6-32bit-1.3.0-11.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35669
    P
    apache2-mod_perl-2.0.4-40.19 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61893
    P
    libtidy5-5.4.0-3.2.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62416
    P
    gstreamer-plugins-bad-1.12.5-1.40 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:107336
    P
    tar-1.30-3.3.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35593
    P
    libnetpbm10-10.26.44-101.9.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35697
    P
    findutils-4.4.0-38.26.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35522
    P
    apache2-2.2.10-2.24.5 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62907
    P
    libtool-32bit-2.4.6-1.406 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:46361
    P
    python-pycrypto-2.6.1-1.15 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2662
    P
    Security update for audiofile (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:2680
    P
    Security update for samba (Important)
    2020-12-02
    oval:org.opensuse.security:def:2700
    P
    Security update for wireshark (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:2733
    P
    Security update for libjpeg-turbo (Important)
    2020-12-02
    oval:org.opensuse.security:def:2749
    P
    Security update for libgxps (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:2747
    P
    Security update for libqt5-qtsvg (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:2668
    P
    Security update for ImageMagick (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:2694
    P
    Security update for vim (Important)
    2020-12-02
    oval:org.opensuse.security:def:2709
    P
    Security update for openexr (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:2739
    P
    Security update for MozillaFirefox (Important)
    2020-12-02
    oval:org.opensuse.security:def:2658
    P
    Security update for texlive (Important)
    2020-12-02
    oval:org.opensuse.security:def:33615
    P
    Security update for python3 (Important)
    2020-12-02
    oval:org.opensuse.security:def:29634
    P
    Security update for clamav (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49288
    P
    pam_krb5 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24221
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:34846
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:46172
    P
    Security update for glibc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:51832
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30862
    P
    Security update for ed (Low)
    2020-12-01
    oval:org.opensuse.security:def:34105
    P
    Security update for Mozilla NSS
    2020-12-01
    oval:org.opensuse.security:def:34200
    P
    Security update for Perl
    2020-12-01
    oval:org.opensuse.security:def:34797
    P
    Security update for ansible, python-straight-plugin (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30309
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49175
    P
    libidn2-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29136
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:29277
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:24959
    P
    Security update for netpbm (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66545
    P
    libunbound2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32848
    P
    dhcp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45121
    P
    Security update for the Linux Kernel (Live Patch 30 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:45413
    P
    Security update for java-1_8_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:45950
    P
    Security update for the Linux Kernel (Live Patch 25 for SLE 12 SP3) (Important)
    2020-12-01
    oval:org.opensuse.security:def:50421
    P
    Security update for glib2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30884
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:31482
    P
    Security update for python (Important)
    2020-12-01
    oval:org.opensuse.security:def:31587
    P
    Security update for tcpdump (Important)
    2020-12-01
    oval:org.opensuse.security:def:25597
    P
    Security update for squid (Critical)
    2020-12-01
    oval:org.opensuse.security:def:25631
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24290
    P
    Security update for libgcrypt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24489
    P
    Security update for bzip2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:24620
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:24818
    P
    Security update for ppp (Important)
    2020-12-01
    oval:org.opensuse.security:def:34885
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45915
    P
    Security update for dbus-1 (Important)
    2020-12-01
    oval:org.opensuse.security:def:49194
    P
    libminizip1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49526
    P
    hplip on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49770
    P
    apache-pdfbox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50165
    P
    libvncclient0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28518
    P
    Security update for openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30906
    P
    Security update for freeradius-server (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50508
    P
    Security update for cpio (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32860
    P
    findutils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33226
    P
    pcsc-ccid on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33470
    P
    Security update for KVM
    2020-12-01
    oval:org.opensuse.security:def:34321
    P
    Security update for samba (Important)
    2020-12-01
    oval:org.opensuse.security:def:27808
    P
    Security update for pulseaudio
    2020-12-01
    oval:org.opensuse.security:def:28000
    P
    Security update for SDL (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28141
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:28377
    P
    Security update for quagga (Important)
    2020-12-01
    oval:org.opensuse.security:def:28479
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31544
    P
    Security update for Samba
    2020-12-01
    oval:org.opensuse.security:def:34883
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34978
    P
    Security update for ghostscript-library (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35215
    P
    Security update for libidn (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35362
    P
    Security update for nagios-plugins
    2020-12-01
    oval:org.opensuse.security:def:49232
    P
    libsmi on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31582
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30401
    P
    Security update for Xen
    2020-12-01
    oval:org.opensuse.security:def:30544
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:30754
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34104
    P
    Security update for mozilla-nspr (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45928
    P
    Security update for permissions (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:46233
    P
    Security update for clamav (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49065
    P
    ceph-common on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30872
    P
    Security update for expat (Important)
    2020-12-01
    oval:org.opensuse.security:def:23423
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:34911
    P
    Security update for e2fsprogs
    2020-12-01
    oval:org.opensuse.security:def:49342
    P
    tar on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28534
    P
    Security update for Mono
    2020-12-01
    oval:org.opensuse.security:def:73210
    P
    libpython3_6m1_0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30873
    P
    Security update for expat (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:46235
    P
    Security update for java-1_7_0-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:73328
    P
    tar on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29572
    P
    Security update for amanda (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:51770
    P
    Security update for freerdp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34116
    P
    Security update for nautilus (Low)
    2020-12-01
    oval:org.opensuse.security:def:34739
    P
    Security update for LibVNCServer (Important)
    2020-12-01
    oval:org.opensuse.security:def:46086
    P
    Security update for java-1_8_0-ibm (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66637
    P
    tar on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27796
    P
    Security update for libksba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28850
    P
    Security update for Xen
    2020-12-01
    oval:org.opensuse.security:def:29050
    P
    Security update for apache2-mod_perl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29193
    P
    Security update for openldap2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:29533
    P
    Security update for MozillaFirefox, mozilla-nss, mozilla-nspr (Important)
    2020-12-01
    oval:org.opensuse.security:def:32330
    P
    Security update for samba (Important)
    2020-12-01
    oval:org.opensuse.security:def:45110
    P
    Security update for squid (Important)
    2020-12-01
    oval:org.opensuse.security:def:45231
    P
    Security update for xdg-utils (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45534
    P
    Security update for wpa_supplicant (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45744
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:46028
    P
    Security update for mailman (Important)
    2020-12-01
    oval:org.opensuse.security:def:49130
    P
    ldb-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50494
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:32369
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27797
    P
    Security update for lzo
    2020-12-01
    oval:org.opensuse.security:def:30958
    P
    Security update for gnutls (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31538
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24903
    P
    Security update for libssh2_org (Important)
    2020-12-01
    oval:org.opensuse.security:def:67722
    P
    libpython2_7-1_0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34882
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50325
    P
    Security update for udisks2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28578
    P
    Security update for pixman
    2020-12-01
    oval:org.opensuse.security:def:23415
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:24230
    P
    Security update for the Linux Kernel (Live Patch 31 for SLE 12 SP3) (Important)
    2020-12-01
    oval:org.opensuse.security:def:24412
    P
    Security update for atftp (Important)
    2020-12-01
    oval:org.opensuse.security:def:24542
    P
    Security update for libpcap (Important)
    2020-12-01
    oval:org.opensuse.security:def:24767
    P
    Security update for hunspell (Low)
    2020-12-01
    oval:org.opensuse.security:def:33576
    P
    Security update for Mesa (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50562
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49176
    P
    libipa_hbac-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49321
    P
    qemu-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49672
    P
    libjbig2-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49927
    P
    python2-pywbem on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50255
    P
    xorg-x11-server-wayland on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29590
    P
    Security update for apport (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29216
    P
    Security update for perl-XML-LibXML (Important)
    2020-12-01
    oval:org.opensuse.security:def:34361
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32849
    P
    dhcpcd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33169
    P
    libopenssl0_9_8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33313
    P
    libsnmp15-openssl1-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33527
    P
    Security update for Websphere Community Edition
    2020-12-01
    oval:org.opensuse.security:def:46143
    P
    Security update for mariadb (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29252
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27872
    P
    Recommended update for python-setuptools (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28084
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28225
    P
    Security update for libsndfile (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28430
    P
    Security update for wireshark (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30842
    P
    Security update for cvs (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24086
    P
    Security update for icu (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:64388
    P
    libssh-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34894
    P
    Security update for cvs (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35114
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:49161
    P
    libcaca-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28838
    P
    Security update for tidy (Low)
    2020-12-01
    oval:org.opensuse.security:def:30312
    P
    Security update for tcpdump (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30458
    P
    Security update for Mesa
    2020-12-01
    oval:org.opensuse.security:def:30699
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:30803
    P
    Security update for cairo (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24917
    P
    Security update for jakarta-commons-fileupload (Important)
    2020-12-01
    oval:org.opensuse.security:def:24724
    P
    Security update for openvpn (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45916
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:46045
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:50390
    P
    Security update for curl (Important)
    2020-12-01
    oval:org.opensuse.security:def:24756
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28839
    P
    Security update for tiff (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:23476
    P
    Security update for xorg-x11-server (Important)
    2020-12-01
    oval:org.opensuse.security:def:34955
    P
    Security update for fontconfig (Low)
    2020-12-01
    oval:org.opensuse.security:def:87231
    P
    Security update for tar (Moderate)
    2020-09-30
    oval:com.ubuntu.xenial:def:2018204820000000
    V
    CVE-2018-20482 on Ubuntu 16.04 LTS (xenial) - low.
    2018-12-26
    oval:com.ubuntu.bionic:def:201820482000
    V
    CVE-2018-20482 on Ubuntu 18.04 LTS (bionic) - low.
    2018-12-26
    oval:com.ubuntu.disco:def:2018204820000000
    V
    CVE-2018-20482 on Ubuntu 19.04 (disco) - low.
    2018-12-26
    oval:com.ubuntu.cosmic:def:201820482000
    V
    CVE-2018-20482 on Ubuntu 18.10 (cosmic) - low.
    2018-12-26
    oval:com.ubuntu.cosmic:def:2018204820000000
    V
    CVE-2018-20482 on Ubuntu 18.10 (cosmic) - low.
    2018-12-26
    oval:com.ubuntu.trusty:def:201820482000
    V
    CVE-2018-20482 on Ubuntu 14.04 LTS (trusty) - low.
    2018-12-26
    oval:com.ubuntu.bionic:def:2018204820000000
    V
    CVE-2018-20482 on Ubuntu 18.04 LTS (bionic) - low.
    2018-12-26
    oval:com.ubuntu.xenial:def:201820482000
    V
    CVE-2018-20482 on Ubuntu 16.04 LTS (xenial) - low.
    2018-12-26
    BACK
    gnu tar *
    debian debian linux 8.0
    debian debian linux 9.0
    opensuse leap 15.0
    gnu tar 1.30