CVE-2019-9923

pax_decode_header in sparse.c in GNU Tar before 1.32 had a NULL pointer dereference when parsing certain archives that have malformed extended headers.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gnu:tar:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:opensuse:leap:15.0:*:*:*:*:*:*:*

Information

Published : 2019-03-22 08:29

Updated : 2021-06-29 15:15


NVD link : CVE-2019-9923

Mitre link : CVE-2019-9923


JSON object : View

Products Affected

opensuse

  • leap

gnu

  • tar
CWE
CWE-476

NULL Pointer Dereference