| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: tar-debuginfo | Distribution: Fedora Project |
| Version: 1.35 | Vendor: Fedora Project |
| Release: 9.fc44 | Build date: Mon Sep 7 20:07:23 2026 |
| Group: Development/Debug | Build host: buildvm-ppc64le-29.rdu3.fedoraproject.org |
| Size: 1726246 | Source RPM: tar-1.35-9.fc44.src.rpm |
| Packager: Fedora Project | |
| Url: https://www.gnu.org/software/tar/ | |
| Summary: Debug information for package tar | |
This package provides debug information for package tar. Debug information is useful when developing applications that use this package or when debugging this package.
GPL-3.0-or-later
* Mon Sep 07 2026 Pavel Cahyna <pcahyna@redhat.com> - 2:1.35-9
- Backport upstream fix for CVE-2026-5704 (file injection hidden from -t) (fedora#2527317)
- Fix --one-top-level with absolute path (broken by the CVE-2025-45582 fix) (fedora#2498061)
Also fixes CVE-2026-18508 (escape from --one-top-level via hardlinks) (fedora#2509845).
- Backport upstream patches for CVE-2026-18477, fixes a bug
where incremental restore with cyclic renames between backups
may create a temporary directory at an archive-controlled path
outside the extraction tree. (fedora#2509846)
The fix for CVE-2025-45582 already prevents exploiting
this problem, so it is more a correctness and hardening change.
* Wed Jan 21 2026 Pavel Cahyna <pcahyna@redhat.com> - 2:1.35-8
- Backport upstream fix for savannah bug 65838, commit 1e6ce98e (fedora#2427654)
- added "padding with zeros" info message (#2089298)
- do not report disk error as file shrank (#2089316)
- upstream fix for savannah bug 64581, commit 51142180
(crash with TAR_OPTIONS) (fedora#2389217)
- Backport fix for regression in the --no-overwrite-dir option
Upstream commit 4e742fc8674064a9fa00d4483d06aca48d5b0463, discussed
in https://www.mail-archive.com/bug-tar@gnu.org/msg06445.html
- Backport upstream changes to jailify extraction directory
Includes related gnulib changes to add openat2
Fixes CVE-2025-45582 (fedora#2380007)
* Sat Jan 17 2026 Fedora Release Engineering <releng@fedoraproject.org> - 2:1.35-7
- Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild
* Fri Jul 25 2025 Fedora Release Engineering <releng@fedoraproject.org> - 2:1.35-6
- Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild
* Sun Jan 19 2025 Fedora Release Engineering <releng@fedoraproject.org> - 2:1.35-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
/usr/lib/debug /usr/lib/debug/.build-id /usr/lib/debug/.build-id/8c /usr/lib/debug/.build-id/8c/f36fe9eb95961b00516fa33bc75d7039db6604 /usr/lib/debug/.build-id/8c/f36fe9eb95961b00516fa33bc75d7039db6604.debug /usr/lib/debug/usr /usr/lib/debug/usr/bin /usr/lib/debug/usr/bin/tar-1.35-9.fc44.ppc64le.debug
Generated by rpm2html 1.8.1
Fabrice Bellet, Fri Sep 11 03:44:18 2026