Tar: Denial of service A vulnerability in Tar could lead to a Denial of Service condition. tar 2021-05-26 2021-05-26 778548 local, remote 1.34 1.34

The Tar program provides the ability to create and manipulate tar archives.

It was discovered that GNU Tar had a memory leak when processing archive headers.

A remote attacker could entice a user to open a specially crafted archive using Tar, possibly resulting in a Denial of Service condition.

There is no known workaround at this time.

All Tar users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=app-arch/tar-1.34"
CVE-2021-20193 whissi whissi