Ubuntu Security Notice 4692-1 - Chris Siebenmann discovered that tar incorrectly handled extracting files resized during extraction when invoked with the --sparse flag. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 12.04 ESM, Ubuntu 14.04 ESM, Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. Daniel Axtens discovered that tar incorrectly handled certain malformed tar files. If a user or automated system were tricked into processing a specially crafted tar archive, a remote attacker could use this issue to cause tar to crash, resulting in a denial of service. Various other issues were also addressed.
9bed467c26667336b932ddeba1541600754872bc0120a0b322fee2ac338b5d12
Gentoo Linux Security Advisory 201903-5 - A vulnerability in Tar could led to a Denial of Service condition. Versions less than 1.30-r1 are affected.
13c5f7e57c5de3c581572b44785ed1addaa4de9fcc7744b3622491bb61d0105f