Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Debian 9: DLA-2830-1 Moderate: Tar Infinite Loop Threat Mitigated

debian lts
Calendar Grey November 28, 2021
Dist Debian Esm H88
Ubuntu Security Notice USN-5342-1 highlights a critical vulnerability in the zip command that has been patched. Users are strongly encouraged to upgrade.
An infinite loop when --sparse is used with file shrinkage during read access was fixed in the GNU tar archiving utility

Summary

For Debian 9 stretch, this problem has been fixed in version
1.29b-1.1+deb9u1.

We recommend that you upgrade your tar packages.

For the detailed security status of tar please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/tar

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Package: tar
Version: 1.29b-1.1+deb9u1
CVE ID: CVE-2018-20482
Debian Bug: 917377

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here