Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2022-48303
HistoryJan 30, 2023 - 4:15 a.m.

CVE-2022-48303

2023-01-3004:15:08
Debian Security Bug Tracker
security-tracker.debian.org
42
gnu tar
1.34
out-of-bounds read
uninitialized memory
conditional jump
v7 archive
mtime
whitespace characters
unix

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

0.0005 Low

EPSS

Percentile

18.9%

GNU Tar through 1.34 has a one-byte out-of-bounds read that results in use of uninitialized memory for a conditional jump. Exploitation to change the flow of control has not been demonstrated. The issue occurs in from_header in list.c via a V7 archive in which mtime has approximately 11 whitespace characters.

OSVersionArchitecturePackageVersionFilename
Debian12alltar< 1.34+dfsg-1.2+deb12u1tar_1.34+dfsg-1.2+deb12u1_all.deb
Debian11alltar< 1.34+dfsg-1+deb11u1tar_1.34+dfsg-1+deb11u1_all.deb
Debian999alltar< 1.34+dfsg-1.4tar_1.34+dfsg-1.4_all.deb
Debian13alltar< 1.34+dfsg-1.4tar_1.34+dfsg-1.4_all.deb

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

0.0005 Low

EPSS

Percentile

18.9%