Search CVE reports


Toggle filters

1 result


CVE-2026-33056

Medium priority

Some fixes available 34 of 53

tar-rs is a tar archive reading/writing library for Rust. In versions 0.4.44 and below, when unpacking a tar archive, the tar crate's unpack_dir function uses fs::metadata() to check whether a path that already exists is a...

23 affected packages

rust-tar, rustc, rustc-1.62, rustc-1.74, rustc-1.76...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rust-tar Not affected Fixed Fixed Needs evaluation
rustc Not in release Fixed Fixed Needs evaluation Needs evaluation
rustc-1.62 Not in release Not in release Fixed
rustc-1.74 Not in release Fixed Not in release
rustc-1.76 Not in release Fixed Fixed Needs evaluation
rustc-1.77 Not in release Fixed Fixed Needs evaluation
rustc-1.78 Not in release Fixed Fixed Needs evaluation
rustc-1.79 Not in release Fixed Fixed Needs evaluation
rustc-1.80 Not in release Fixed Fixed Needs evaluation
rustc-1.81 Not in release Fixed Fixed
rustc-1.82 Not in release Fixed Fixed
rustc-1.83 Not in release Fixed Fixed
rustc-1.84 Not in release Fixed Fixed
rustc-1.85 Not in release Fixed Fixed
rustc-1.88 Not in release Not in release Not in release
rustc-1.89 Not in release Fixed Fixed
rustc-1.91 Not affected Fixed Fixed
rustc-1.92 Not affected Not in release Not in release
rustc-1.93 Not affected Not in release Not in release
cargo Not in release Not in release Needs evaluation Needs evaluation Needs evaluation
rust-cargo-c Not affected Needs evaluation Not in release
rust-async-tar Not in release Needs evaluation Not in release
rust-astral-tokio-tar Needs evaluation Not in release Not in release
Show all 23 packages Show less packages