VYPR

tar-rs

by tar-rs

Source repositories

CVEs (1)

  • CVE-2026-33055Mar 20, 2026
    risk 0.00cvss epss 0.00

    tar-rs is a tar archive reading/writing library for Rust. Versions 0.4.44 and below have conditional logic that skips the PAX size header in cases where the base header size is nonzero. As part of CVE-2025-62518, the astral-tokio-tar project was changed to correctly honor PAX…