CVE-2021-33640
Summary
| CVE | CVE-2021-33640 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-12-19 16:15:00 UTC |
| Updated | 2023-11-07 03:35:00 UTC |
| Description | After tar_close(), libtar.c releases the memory pointed to by pointer t. After tar_close() is called in the list() function, it continues to use pointer t: free_longlink_longname(t->th_buf) . As a result, the released memory is used (use-after-free). |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 283563 Fedora Security Update for libtar (FEDORA-2022-ccc68b06cc)
- 283564 Fedora Security Update for libtar (FEDORA-2022-88772d0a2d)
- 672599 EulerOS Security Update for libtar (EulerOS-SA-2023-1324)
- 672709 EulerOS Security Update for libtar (EulerOS-SA-2023-1448)
- 672751 EulerOS Security Update for libtar (EulerOS-SA-2023-1473)
- 672797 EulerOS Security Update for libtar (EulerOS-SA-2023-1529)
- 672804 EulerOS Security Update for libtar (EulerOS-SA-2023-1554)
- 672850 EulerOS Security Update for libtar (EulerOS-SA-2023-1575)
- 672854 EulerOS Security Update for libtar (EulerOS-SA-2023-1585)
- 904891 Common Base Linux Mariner (CBL-Mariner) Security Update for libtar (12359)
- 905158 Common Base Linux Mariner (CBL-Mariner) Security Update for libtar (12519)
- 905191 Common Base Linux Mariner (CBL-Mariner) Security Update for libtar (12909)
- 905226 Common Base Linux Mariner (CBL-Mariner) Security Update for libtar (12933)
- 905410 Common Base Linux Mariner (CBL-Mariner) Security Update for libtar (12933-1)
- 905480 Common Base Linux Mariner (CBL-Mariner) Security Update for libtar (12909-1)