Mandrake Linux Security Advisory : tar (MDKSA-2006:046)
Medium Nessus Plugin ID 20964
SynopsisThe remote Mandrake Linux host is missing a security update.
DescriptionGnu tar versions 1.14 and above have a buffer overflow vulnerability and some other issues including :
- Carefully crafted invalid headers can cause buffer overrun.
- Invalid header fields go undiagnosed.
- Some valid time strings are ignored.
The updated packages have been patched to address this issue.
SolutionUpdate the affected tar package.