tar 1.28-2.1ubuntu0.2 source package in Ubuntu

Changelog

tar (1.28-2.1ubuntu0.2) xenial-security; urgency=medium

  * SECURITY UPDATE: Infinite read loop
    - debian/patches/Fix-CVE-2018-20482.patch: Add handling for short read
      condition in sparse_dump_region() of src/sparse.c.
    - CVE-2018-20482
  * SECURITY UPDATE: NULL pointer dereference
    - debian/patches/CVE-2019-9923.patch: Check for NULL return value from
      find_next_block in src/sparse.c.
    - CVE-2019-9923

 -- Avital Ostromich <email address hidden>  Wed, 16 Dec 2020 16:39:55 -0500

Upload details

Uploaded by:
Avital Ostromich
Uploaded to:
Xenial
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
utils
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Xenial updates main utils
Xenial security main utils

Downloads

File Size SHA-256 Checksum
tar_1.28.orig.tar.xz 1.7 MiB 6da98f52fc469754dbde475c861581036ff2c83a1ef4f7250292935139f587d9
tar_1.28-2.1ubuntu0.2.debian.tar.xz 38.4 KiB 3e68a6029bafd45a99535bcbd3605289e68de3e90fa180723b51cbaf9badc611
tar_1.28-2.1ubuntu0.2.dsc 1.8 KiB 13dab3cc20a49a854eb8d62e476976dc7dbd13eae6ab4e4d79c4011ef7ad9d0e

View changes file

Binary packages built by this source

tar: GNU version of the tar archiving utility

 Tar is a program for packaging a set of files as a single archive in tar
 format. The function it performs is conceptually similar to cpio, and to
 things like PKZIP in the DOS world. It is heavily used by the Debian package
 management system, and is useful for performing system backups and exchanging
 sets of files with others.

tar-dbgsym: debug symbols for package tar

 Tar is a program for packaging a set of files as a single archive in tar
 format. The function it performs is conceptually similar to cpio, and to
 things like PKZIP in the DOS world. It is heavily used by the Debian package
 management system, and is useful for performing system backups and exchanging
 sets of files with others.

tar-scripts: optional scripts for GNU version of the tar archiving utility

 This package provides the backup, restore, backup.sh, and dump-remind
 scripts that are mentioned in the tar documentation.