On 10/4/24 13:59, Alan Coopersmith wrote: The upstream bug report is at https://gitlab.gnome.org/GNOME/libgsf/-/issues/34 and states the bug is "Fixed in 1.14.53" and says it fixes that issue. Oops, I should have noted the above bug report & commit also cover CVE-2024-36474 from https://talosintelligence.com/vulnerabilityreports/TALOS-2024-2068
-- -Alan Coopersmith- alan.coopersmith () oracle com Oracle Solaris Engineering - https://blogs.oracle.com/solaris
An error within the "tardirectoryforfile()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.