A heap overflow in apk (Alpine Linux's package manager) allows a remote attacker to cause a denial of service, or achieve code execution, by crafting a malicious APKINDEX.tar.gz file with a bad pax header block.
- http://www.openwall.com/lists/oss-security/2017/06/25/2
No PoCs found on GitHub currently.