Skip to main content
Version: latest

CVE-2019-9923

CVE Details

CVE-2019-9923

Last Update

9/25/24

NIST CVE Summary

Pax_decode_header in sparse.c in GNU Tar before 1.32 had a NULL pointer dereference when parsing certain archives that have malformed extended headers.

Our Official Summary

Waiting on a fix from third party mongodb vendor.

CVE Severity

7.5

Status

Ongoing

Affected Products & Versions

  • Palette VerteX airgap 4.4.14

Revision History

  • 1.0 08/16/2024 Initial Publication
  • 2.0 08/17/2024 Added Palette VerteX airgap 4.4.14 to Affected Products
  • 3.0 09/25/2024 CVE remediated in Palette VerteX airgap 4.4.18