Skip to main content

Vendor/product archive

gnu / tar CVEs

Beta · best-effort

18 CVEs tagged to gnu / tar1 Critical, 3 High, 11 Medium, 3 Low, 0 Unrated.

CVE-2025-45582

Published Jul 11, 2025

GNU Tar through 1.35 allows file overwrite via directory traversal in crafted TAR archives, with a certain two-step process. First, the victim must extract an archive that contain…

CVSS 4.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-39804

Published Mar 27, 2024

In GNU tar before 1.35, mishandled extension attributes in a PAX archive can lead to an application crash in xheader.c.

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-48303

Published Jan 30, 2023

GNU Tar through 1.34 has a one-byte out-of-bounds read that results in use of uninitialized memory for a conditional jump. Exploitation to change the flow of control has not been…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-20193

Published Mar 26, 2021

A flaw was found in the src/list.c of tar 1.33 and earlier. This flaw allows an attacker who can submit a crafted input file to tar to cause uncontrolled consumption of memory. Th…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2019-9923

Published Mar 22, 2019

pax_decode_header in sparse.c in GNU Tar before 1.32 had a NULL pointer dereference when parsing certain archives that have malformed extended headers.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-6321

Published Dec 9, 2016

Directory traversal vulnerability in the safer_name_suffix function in GNU tar 1.14 through 1.29 might allow remote attackers to bypass an intended protection mechanism and write…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0624

Published Mar 15, 2010

Heap-based buffer overflow in the rmt_read__ function in lib/rtapelib.c in the rmt client functionality in GNU tar before 1.23 and GNU cpio before 2.11 allows remote rmt servers t…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6097

Published Nov 24, 2006

GNU tar 1.16 and 1.15.1, and possibly other versions, allows user-assisted attackers to overwrite arbitrary files via a tar file that contains a GNUTYPE_NAMES record with a symbol…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0300

Published Feb 24, 2006

Buffer overflow in tar 1.14 through 1.15.90 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute code via unspecified vectors invol…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2541

Published Aug 10, 2005

Tar 1.15.1 does not properly warn the user when extracting setuid or setgid files, which may allow local users or remote attackers to gain privileges.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2002-1216

Published Oct 28, 2002

GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disab…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-0399

Published Oct 10, 2002

Directory traversal vulnerability in GNU tar 1.13.19 through 1.13.25, and possibly later versions, allows attackers to overwrite arbitrary files during archive extraction via a (1…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1267

Published Jul 12, 2001

Directory traversal vulnerability in GNU tar 1.13.19 and earlier allows local users to overwrite arbitrary files during archive extraction via a tar file whose filenames contain a…

CVSS 2.1 · Low
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-18 of 18 CVEsPage 1 of 1