Information security
fromThe Hacker News
2 days agoTARmageddon Flaw in Async-Tar Rust Library Could Enable Remote Code Execution
A TAR parsing vulnerability (CVE-2025-62518) in async-tar and forks can enable remote code execution via file-overwrite; migrate from tokio-tar to patched astral-tokio-tar 0.5.6.