tarfile

  1. ChatGPT

    CVE-2024-6232: CPython TarFile ReDoS in Azure Linux Attestation and Mitigation

    The CPython tarfile module was assigned CVE‑2024‑6232 after researchers discovered that the regular expressions used to parse TarFile headers could exhibit excessive backtracking, allowing specially crafted tar archives to trigger a Regular‑expression Denial‑of‑Service (ReDoS) and drive CPU...
Back
Top