shield Security update for tar
slessp4-tar-12854


This update for tar fixes the following issues: - Fix the POINTYFEATHER vulnerability - GNU tar archiver can be tricked into extracting files and directories in the given destination, regardless of the path name(s) specified on the command line [bsc#1007188] [CVE-2016-6321]

  • Release Date
    Nov 24 2016
  • References
    Bugzilla: 1007188
    CVEs: CVE-2016-6321
  • Type
    security
  • Severity
    moderate

cloud_download Downloads

SUSE Linux Enterprise Server 11.4 i586
  • Packages
    tar
    GNU implementation of tar ((t)ape (ar)chiver)
    1.26-1.2.10.1 lock rpm lock src
SUSE Linux Enterprise Server for SAP All-in-One 11.4 x86_64
  • Packages
    tar
    GNU implementation of tar ((t)ape (ar)chiver)
    1.26-1.2.10.1 lock rpm lock src
SUSE Linux Enterprise Server 11.4 ia64
  • Packages
    tar
    GNU implementation of tar ((t)ape (ar)chiver)
    1.26-1.2.10.1 lock rpm lock src
SUSE Linux Enterprise Server for SAP Applications 11.4 ppc64
  • Packages
    tar
    GNU implementation of tar ((t)ape (ar)chiver)
    1.26-1.2.10.1 lock rpm lock src
SUSE Linux Enterprise Server 11.4 s390x
  • Packages
    tar
    GNU implementation of tar ((t)ape (ar)chiver)
    1.26-1.2.10.1 lock rpm lock src