Known vulnerabilities in tar (Red Hat package)
Vendor:
Red Hat Inc.
Software:
tar (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:tar_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU120256 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2025-45582 |
CWE-22 | Low | 1.34-6.el9_4.3, 1.34-7.el9_6.2, 1.35-7.el10_0.2, 1.35-9.el10_1 | 23.12.2025 |
SB2025122320 SB2025122321 SB2026010502 and 19 more |
||
| #VU72432 - Heap-based Buffer Overflow CVE-2022-48303 |
CWE-122 | High | 1.30-5.el8_6.1, 1.30-6.el8_7.1, 1.34-6.el9_1 | 21.02.2023 |
SB2023022105 SB2023022111 SB2023022112 and 72 more |