tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2025:21779 https://access.redhat.com/errata/RHSA-2025:21779
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2025:21778 https://access.redhat.com/errata/RHSA-2025:21778
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:21816 https://access.redhat.com/errata/RHSA-2025:21816
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:21815 https://access.redhat.com/errata/RHSA-2025:21815
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2025:21856 https://access.redhat.com/errata/RHSA-2025:21856
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2025:21964 https://access.redhat.com/errata/RHSA-2025:21964
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:22012 https://access.redhat.com/errata/RHSA-2025:22012
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:22011 https://access.redhat.com/errata/RHSA-2025:22011
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2025:22030 https://access.redhat.com/errata/RHSA-2025:22030
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2025:22181 https://access.redhat.com/errata/RHSA-2025:22181
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.20 Via RHSA-2025:22255 https://access.redhat.com/errata/RHSA-2025:22255
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:22668 https://access.redhat.com/errata/RHSA-2025:22668
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2025:22899 https://access.redhat.com/errata/RHSA-2025:22899
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2025:23001 https://access.redhat.com/errata/RHSA-2025:23001
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2025:23002 https://access.redhat.com/errata/RHSA-2025:23002
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:23088 https://access.redhat.com/errata/RHSA-2025:23088
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:23087 https://access.redhat.com/errata/RHSA-2025:23087
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2025:23347 https://access.redhat.com/errata/RHSA-2025:23347
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2025:23348 https://access.redhat.com/errata/RHSA-2025:23348
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:23294 https://access.redhat.com/errata/RHSA-2025:23294
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:23295 https://access.redhat.com/errata/RHSA-2025:23295
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:23374 https://access.redhat.com/errata/RHSA-2025:23374
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2025:23394 https://access.redhat.com/errata/RHSA-2025:23394
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:23325 https://access.redhat.com/errata/RHSA-2025:23325
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:23326 https://access.redhat.com/errata/RHSA-2025:23326
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Advanced Update Support Via RHSA-2025:23740 https://access.redhat.com/errata/RHSA-2025:23740
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2025:23736 https://access.redhat.com/errata/RHSA-2025:23736
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2025:23733 https://access.redhat.com/errata/RHSA-2025:23733
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2025:23741 https://access.redhat.com/errata/RHSA-2025:23741
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2025:23746 https://access.redhat.com/errata/RHSA-2025:23746
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2025:23747 https://access.redhat.com/errata/RHSA-2025:23747
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2025:23737 https://access.redhat.com/errata/RHSA-2025:23737
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:23948 https://access.redhat.com/errata/RHSA-2025:23948
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2026:0227 https://access.redhat.com/errata/RHSA-2026:0227
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2026:0226 https://access.redhat.com/errata/RHSA-2026:0226
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Advanced Update Support Via RHSA-2026:0244 https://access.redhat.com/errata/RHSA-2026:0244
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:0243 https://access.redhat.com/errata/RHSA-2026:0243
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2026:0246 https://access.redhat.com/errata/RHSA-2026:0246
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:0245 https://access.redhat.com/errata/RHSA-2026:0245
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:0314 https://access.redhat.com/errata/RHSA-2026:0314
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2026:0424 https://access.redhat.com/errata/RHSA-2026:0424
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2026:0426 https://access.redhat.com/errata/RHSA-2026:0426
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2026:0477 https://access.redhat.com/errata/RHSA-2026:0477
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:0973 https://access.redhat.com/errata/RHSA-2026:0973
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:0987 https://access.redhat.com/errata/RHSA-2026:0987
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2026:1025 https://access.redhat.com/errata/RHSA-2026:1025
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:1378 https://access.redhat.com/errata/RHSA-2026:1378
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:1380 https://access.redhat.com/errata/RHSA-2026:1380
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:1379 https://access.redhat.com/errata/RHSA-2026:1379
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:1381 https://access.redhat.com/errata/RHSA-2026:1381
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:1377 https://access.redhat.com/errata/RHSA-2026:1377