A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to…
High CVSS 7.8
Summary
A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condition. Exploiting a double-free vulnerability can result in memory corruption, enabling an attacker to execute arbitrary code or cause a denial-of-service condition.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
- :
Sources
- NVD DATABASE
Original Links
- https://access.redhat.com/errata/RHSA-2025:14130 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14135 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14137 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14141 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14142 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14525 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14528 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14594 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14644 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14808 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14810 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:14828 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:15024 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:15397 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:15709 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:15827 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:15828 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:16524 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:18217 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:18218 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:18219 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:19041 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:19046 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:21885 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:21913 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2026:0326 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2026:0934
- https://access.redhat.com/errata/RHSA-2026:1541
- https://access.redhat.com/security/cve/CVE-2025-5914 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2370861 Issue Tracking
- https://github.com/libarchive/libarchive/pull/2598 Exploit
- https://github.com/libarchive/libarchive/releases/tag/v3.8.0 Release Notes
- https://cert-portal.siemens.com/productcert/html/ssa-585531.html
Timeline
- nvd_ingest NVD