RHSA-2026:49525: Important: perl-Archive-Tar security update
Archive::Tar provides an object oriented mechanism for handling tar files. It provides class methods for quick and easy files handling while also allowing for the creation of tar file objects for custom manipulation. If you have the IO::Zlib module installed, Archive::Tar will also support compressed or gzipped tar files.Security Fix(es): perl-Archive-Tar: perl-Archive-Tar: Denial of Service via crafted tar header with large entry size (CVE-2026-9538) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Other sources
Important: perl-Archive-Tar security update
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
perl-Archive-Tarto a version that resolves this vulnerability.Patch CVE-2026-9538
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:49525?
The severity of RHSA-2026:49525 is classified as high with a CVSS score of 7.
How do I fix RHSA-2026:49525?
To fix RHSA-2026:49525, update the affected perl-Archive-Tar package to the latest version provided by Red Hat.
What are the impacted systems for RHSA-2026:49525?
RHSA-2026:49525 impacts several Red Hat Enterprise Linux versions including IBM z Systems, Power LE, x86_64, and ARM architectures.
What type of vulnerability is addressed in RHSA-2026:49525?
RHSA-2026:49525 addresses a security vulnerability in the perl-Archive-Tar package.
When was RHSA-2026:49525 published?
RHSA-2026:49525 was published on August 3, 2026.