libtar 'th_read()' Function Multiple Heap Buffer Overflow Vulnerabilities

Bugtraq ID: 62922
Class: Input Validation Error
CVE: CVE-2013-4397
Remote: Yes
Local: No
Published: Oct 09 2013 12:00AM
Updated: Apr 13 2015 09:52PM
Credit: Timo Warns
Vulnerable: Redhat Enterprise Linux Workstation Optional 6
Redhat Enterprise Linux Workstation 6
Redhat Enterprise Linux Server Optional 6
Redhat Enterprise Linux Server 6
Redhat Enterprise Linux HPC Node Optional 6
Redhat Enterprise Linux HPC Node 6
Redhat Enterprise Linux Desktop Optional 6
Redhat Enterprise Linux Desktop 6
Oracle Enterprise Linux 6.2
Oracle Enterprise Linux 6
Mandriva Business Server 1 X86 64
Mandriva Business Server 1
MandrakeSoft Enterprise Server 5 x86_64
MandrakeSoft Enterprise Server 5
libtar libtar 1.2.19
Gentoo Linux
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
CentOS CentOS 6
Not Vulnerable: libtar libtar 1.2.20


 

Privacy Statement
Copyright 2010, SecurityFocus