ELSA-2010-0141

ELSA-2010-0141 - tar security update

Type:SECURITY
Severity:MODERATE
Release Date:2010-03-15

Description



[2:1.15.1-23.0.1.2]
- CVE-2007-4476 - fix stack crashing in safer_name_suffix
- CVE-2010-0624 - fix heap-based buffer overflow by expanding
a specially-crafted archive


Related CVEs


CVE-2007-4476
CVE-2010-0624

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 4 (i386) tar-1.14-13.el4_8.1.src.rpma97fe9e64eb3e60c588c968e73140943-
tar-1.14-13.el4_8.1.i386.rpmc4693e60171abaa865a2cc36e8560ced-
Oracle Linux 4 (ia64) tar-1.14-13.el4_8.1.src.rpma97fe9e64eb3e60c588c968e73140943-
tar-1.14-13.el4_8.1.ia64.rpmcc71230f3a769248653393a6d3b98059-
Oracle Linux 4 (x86_64) tar-1.14-13.el4_8.1.src.rpma97fe9e64eb3e60c588c968e73140943-
tar-1.14-13.el4_8.1.x86_64.rpm1a382c43bb966ce483315f7d9575eca4-
Oracle Linux 5 (i386) tar-1.15.1-23.0.1.el5_4.2.src.rpm648ce4a5d473785e0469d59844df4aecELBA-2012-0580
tar-1.15.1-23.0.1.el5_4.2.i386.rpm0a76781061fb61105cd27cc1cc384dc6ELBA-2012-0580
Oracle Linux 5 (ia64) tar-1.15.1-23.0.1.el5_4.2.src.rpm648ce4a5d473785e0469d59844df4aecELBA-2012-0580
tar-1.15.1-23.0.1.el5_4.2.ia64.rpmb967809c714c3a0d88e7a7a661fd5627ELBA-2012-0580
Oracle Linux 5 (x86_64) tar-1.15.1-23.0.1.el5_4.2.src.rpm648ce4a5d473785e0469d59844df4aecELBA-2012-0580
tar-1.15.1-23.0.1.el5_4.2.x86_64.rpm0012f7a5cb73063d3d7a3cc8e79ca665ELBA-2012-0580



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete