CVE-2024-20696
published 2024-01-09CVE-2024-20696: Windows libarchive Remote Code Execution Vulnerability
PriorityP343high7.3CVSS 3.1
AVLACLPRLUIRSUCHIHAH
EPSS
3.15%
86.5th percentile
Windows libarchive Remote Code Execution Vulnerability
Affected
49 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libarchive | < libarchive 3.6.2-1+deb12u2 (bookworm) | libarchive 3.6.2-1+deb12u2 (bookworm) |
| libarchive | libarchive | >= 0 < 3.4.3-2+deb11u2 | 3.4.3-2+deb11u2 |
| libarchive | libarchive | >= 0 < 3.6.2-1+deb12u2 | 3.6.2-1+deb12u2 |
| libarchive | libarchive | >= 0 < 3.7.4-1.1 | 3.7.4-1.1 |
| libarchive | libarchive | >= 0 < 3.7.4-1.1 | 3.7.4-1.1 |
| libarchive | libarchive | >= 0 < 3.6.0-1ubuntu1.6 | 3.6.0-1ubuntu1.6 |
| libarchive | libarchive | >= 0 < 3.7.2-2ubuntu0.6 | 3.7.2-2ubuntu0.6 |
| libarchive | libarchive | >= 0 < 3.7.7-0ubuntu3.1 | 3.7.7-0ubuntu3.1 |
| libarchive | libarchive | >= 0 < 3.1.2-7ubuntu2.8+esm4 | 3.1.2-7ubuntu2.8+esm4 |
| libarchive | libarchive | >= 0 < 3.1.2-11ubuntu0.16.04.8+esm2 | 3.1.2-11ubuntu0.16.04.8+esm2 |
| libarchive | libarchive | >= 0 < 3.2.2-3.1ubuntu0.7+esm2 | 3.2.2-3.1ubuntu0.7+esm2 |
| libarchive | libarchive | >= 0 < 3.4.0-2ubuntu1.5+esm1 | 3.4.0-2ubuntu1.5+esm1 |
| microsoft | windows_10_1809 | < 10.0.17763.5329 | 10.0.17763.5329 |
| microsoft | windows_10_21h2 | < 10.0.19044.3930 | 10.0.19044.3930 |
| microsoft | windows_10_22h2 | < 10.0.19045.3930 | 10.0.19045.3930 |
| microsoft | windows_10_version_1809 | >= 10.0.0 < 10.0.17763.5329 | 10.0.17763.5329 |
| microsoft | windows_10_version_1809 | >= 10.0.17763.0 < 10.0.17763.5329 | 10.0.17763.5329 |
| microsoft | windows_10_version_21h2 | >= 10.0.19043.0 < 10.0.19044.3930 | 10.0.19044.3930 |
| microsoft | windows_10_version_22h2 | >= 10.0.19045.0 < 10.0.19045.3930 | 10.0.19045.3930 |
| microsoft | windows_11_21h2 | < 10.0.22000.2713 | 10.0.22000.2713 |
| microsoft | windows_11_22h2 | < 10.0.22621.3007 | 10.0.22621.3007 |
| microsoft | windows_11_23h2 | < 10.0.22631.3007 | 10.0.22631.3007 |
| microsoft | windows_11_version_21h2 | >= 10.0.0 < 10.0.22000.2713 | 10.0.22000.2713 |
| microsoft | windows_11_version_22h2 | >= 10.0.22621.0 < 10.0.22621.3007 | 10.0.22621.3007 |
| microsoft | windows_11_version_22h3 | >= 10.0.22631.0 < 10.0.22631.3007 | 10.0.22631.3007 |
CVSS provenance
nvdv3.17.3HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
osv7.3HIGH
vendor_debian7.3HIGH
vendor_msrc7.3HIGH
vendor_redhat7.3HIGH
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
libarchive vulnerabilities
vendor_ubuntu·2026-04-02·CVSS 5.5
CVE-2025-5916 [MEDIUM] libarchive vulnerabilities
Title: libarchive vulnerabilities
Summary: Several security issues were fixed in libarchive.
It was discovered that libarchive incorrectly handled certain archive
files. An attacker could possibly use this issue to access sensitive
information. This issue only affected Ubuntu 14.04 LTS. (CVE-2019-19221)
It was discovered that libarchive incorrectly handled certain RAR archive
files. If a user or automated system were tricked into processing a
specially crafted RAR archive, an attacker could possibly use this issue to
cause libarchive to crash, resulting in a denial of service, or execute
arbitrary code. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS
and Ubuntu 18.04 LTS. (CVE-2024-20696)
It was discovered that libarchive incorrectly handled certain RAR archive
files. An at
Ubuntu
libarchive vulnerability
vendor_ubuntu·2024-10-31
CVE-2024-20696 libarchive vulnerability
Title: libarchive vulnerability
Summary: libarchive could be made to crash or run programs as your login if it
opened a specially crafted file.
It was discovered that libarchive incorrectly handled certain RAR archive
files. If a user or automated system were tricked into processing a
specially crafted RAR archive, an attacker could use this issue to cause
libarchive to crash, resulting in a denial of service, or possibly execute
arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
libarchive: out-of-bounds access in copy_from_lzss_window_to_unp()
vendor_redhat·2024-01-09·CVSS 7.3
CVE-2024-20696 [HIGH] CWE-190 libarchive: out-of-bounds access in copy_from_lzss_window_to_unp()
libarchive: out-of-bounds access in copy_from_lzss_window_to_unp()
Windows libarchive Remote Code Execution Vulnerability
A flaw was found in the libarchive library. An out-of-bounds access in the copy_from_lzss_window_to_unp function in the libarchive/archive_read_support_format_rar.c file can be triggered due to an integer overflow when a specially crafted RAR archive is processed, causing a crash to the application linked to the library and resulting in a denial of service.
Statement: The remote code execution is only mentioned in the Windows context without any evidence or PoC. As this issue is an out-of-bounds access only, without impact to integrity or confidentiality, this flaw was rated as causing only a denial of service to the application linked to the libarchive library.
Addi
Microsoft
Windows libarchive Remote Code Execution Vulnerability
vendor_msrc·2024-01-09·CVSS 7.3
CVE-2024-20696 [HIGH] CWE-122 Windows libarchive Remote Code Execution Vulnerability
Windows libarchive Remote Code Execution Vulnerability
FAQ: According to the CVSS metric, the attack vector is local (AV:L). Why does the CVE title indicate that this is a remote code execution?
The word Remote in the title refers to the location of the attacker. This type of exploit is sometimes referred to as Arbitrary Code Execution (ACE). The attack itself is carried out locally. This means an attacker or victim needs to execute code from the local machine to exploit the vulnerability.
FAQ: According to the CVSS metric, user interaction is required (UI:R) and privileges required is Low (PR:L). What does that mean for this vulnerability?
An authorized attacker with guest privileges must send a victim a malicious site and convince them to open it.
Windows Libarchive: Windows Libarchiv
Debian
CVE-2024-20696: libarchive - Windows libarchive Remote Code Execution Vulnerability
vendor_debian·2024·CVSS 7.3
CVE-2024-20696 [HIGH] CVE-2024-20696: libarchive - Windows libarchive Remote Code Execution Vulnerability
Windows libarchive Remote Code Execution Vulnerability
Scope: local
bookworm: resolved (fixed in 3.6.2-1+deb12u2)
bullseye: resolved (fixed in 3.4.3-2+deb11u2)
forky: resolved (fixed in 3.7.4-1.1)
sid: resolved (fixed in 3.7.4-1.1)
trixie: resolved (fixed in 3.7.4-1.1)
OSV
libarchive vulnerabilities
osv·2026-04-02·CVSS 5.5
CVE-2019-19221 [MEDIUM] libarchive vulnerabilities
libarchive vulnerabilities
It was discovered that libarchive incorrectly handled certain archive
files. An attacker could possibly use this issue to access sensitive
information. This issue only affected Ubuntu 14.04 LTS. (CVE-2019-19221)
It was discovered that libarchive incorrectly handled certain RAR archive
files. If a user or automated system were tricked into processing a
specially crafted RAR archive, an attacker could possibly use this issue to
cause libarchive to crash, resulting in a denial of service, or execute
arbitrary code. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS
and Ubuntu 18.04 LTS. (CVE-2024-20696)
It was discovered that libarchive incorrectly handled certain RAR archive
files. An attacker could possibly use this issue to execute arbitrary code
or c
OSV
CVE-2024-20696: Windows libarchive Remote Code Execution Vulnerability
osv·2024-01-09·CVSS 7.3
CVE-2024-20696 [HIGH] CVE-2024-20696: Windows libarchive Remote Code Execution Vulnerability
Windows libarchive Remote Code Execution Vulnerability
GHSA
GHSA-g5xc-jv8h-2232: Windows Libarchive Remote Code Execution Vulnerability
ghsa_unreviewed·2024-01-09
CVE-2024-20696 [HIGH] CWE-122 GHSA-g5xc-jv8h-2232: Windows Libarchive Remote Code Execution Vulnerability
Windows Libarchive Remote Code Execution Vulnerability
No detection rules found.
No public exploits indexed.
Trendmicro
The January 2024 Security Update Review
blogs_trendmicro·2024-01-09·CVSS 8.8
[HIGH] The January 2024 Security Update Review
# The January 2024 Security Update Review
Get the January 2024 security update and review.
By: Dustin Childs
2024/01/09
Read time: ( words)
Save to Folio
Welcome to the first patch Tuesday of 2024. As expected, Microsoft and Adobe have released their latest security patches. Take a break from your other activities and join us as we review the details of their latest advisories. If you’d rather watch the video recap, you can check it out here:
Adobe Patches for January 2024
For January, Adobe released a single patch addressing six CVEs in Substance 3D Stager. All six bugs are rated Important with the most severe allowing arbitrary code execution.
None of the bugs fixed by Adobe this month are listed as publicly known or under active attack at the time of release. Adobe categorizes t
Trendmicro
The January 2024 Security Update Review
blogs_trendmicro·2024-01-09·CVSS 9.1
[CRITICAL] The January 2024 Security Update Review
## The January 2024 Security Update Review
Get the January 2024 security update and review.
By: Dustin Childs Jan 09, 2024 Read time: ( words)
Save to Folio
Welcome to the first patch Tuesday of 2024. As expected, Microsoft and Adobe have released their latest security patches. Take a break from your other activities and join us as we review the details of their latest advisories. If you’d rather watch the video recap, you can check it out here:
CVE
Title
Severity
CVSS
Public
Exploited
Type
CVE-2024-20700
Windows Hyper-V Remote Code Execution Vulnerability
Critical
7.5
No
No
RCE
CVE-2024-20674
Windows Kerberos Security Feature Bypass Vulnerability
Critical
9
No
No
SFB
CVE-2024-0057
.NET and Visual Studio Framework Security Feature Bypass Vulnerability
Important
Trendmicro
The January 2024 Security Update Review
blogs_trendmicro·2024-01-09·CVSS 9.1
[CRITICAL] The January 2024 Security Update Review
## The January 2024 Security Update Review
Get the January 2024 security update and review.
By: Dustin Childs 2024/01/09 Read time: ( words)
Save to Folio
Welcome to the first patch Tuesday of 2024. As expected, Microsoft and Adobe have released their latest security patches. Take a break from your other activities and join us as we review the details of their latest advisories. If you’d rather watch the video recap, you can check it out here:
CVE
Title
Severity
CVSS
Public
Exploited
Type
CVE-2024-20700
Windows Hyper-V Remote Code Execution Vulnerability
Critical
7.5
No
No
RCE
CVE-2024-20674
Windows Kerberos Security Feature Bypass Vulnerability
Critical
9
No
No
SFB
CVE-2024-0057
.NET and Visual Studio Framework Security Feature Bypass Vulnerability
Important
8
Bleepingcomputer
Microsoft January 2024 Patch Tuesday fixes 49 flaws, 12 RCE bugs
blogs_bleepingcomputer·2024-01-09·CVSS 8.8
[HIGH] Microsoft January 2024 Patch Tuesday fixes 49 flaws, 12 RCE bugs
## Microsoft January 2024 Patch Tuesday fixes 49 flaws, 12 RCE bugs
## Lawrence Abrams
10 Elevation of Privilege Vulnerabilities
7 Security Feature Bypass Vulnerabilities
12 Remote Code Execution Vulnerabilities
11 Information Disclosure Vulnerabilities
6 Denial of Service Vulnerabilities
3 Spoofing Vulnerabilities
The total count of 49 flaws does not include 4 Microsoft Edge flaws fixed on January 5th.
To learn more about the non-security updates released today, you can review our dedicated articles on the new Windows 11 KB5034123 cumulative update and Windows 10 KB5034122 update .
## This month's interesting flaws
While there were no actively exploited or publicly disclosed vulnerabilities this month, some flaws are more interesting than others.
Microsoft fixes an Office Remo
Trendmicro
The January 2024 Security Update Review
blogs_trendmicro·2024-01-09·CVSS 9.1
[CRITICAL] The January 2024 Security Update Review
## The January 2024 Security Update Review
Get the January 2024 security update and review.
By: Dustin Childs Jan 09, 2024 Read time: ( words)
Save to Folio
Welcome to the first patch Tuesday of 2024. As expected, Microsoft and Adobe have released their latest security patches. Take a break from your other activities and join us as we review the details of their latest advisories. If you’d rather watch the video recap, you can check it out here:
CVE
Title
Severity
CVSS
Public
Exploited
Type
CVE-2024-20700
Windows Hyper-V Remote Code Execution Vulnerability
Critical
7.5
No
No
RCE
CVE-2024-20674
Windows Kerberos Security Feature Bypass Vulnerability
Critical
9
No
No
SFB
CVE-2024-0057
.NET and Visual Studio Framework Security Feature Bypass Vulnerability
Important
Bugzilla
CVE-2024-20696 libarchive: out-of-bounds access in copy_from_lzss_window_to_unp()
bugzilla·2024-06-04·CVSS 7.3
CVE-2024-20696 [HIGH] CVE-2024-20696 libarchive: out-of-bounds access in copy_from_lzss_window_to_unp()
CVE-2024-20696 libarchive: out-of-bounds access in copy_from_lzss_window_to_unp()
Windows Libarchive Remote Code Execution Vulnerability.
References:
https://github.com/libarchive/libarchive/pull/2172
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20696
https://clearbluejar.github.io/posts/patch-tuesday-diffing-cve-2024-20696-windows-libarchive-rce/
Upstream patch:
https://github.com/libarchive/libarchive/commit/eac15e252010c1189a5c0f461364dbe2cd2a68b1
Discussion:
Created libarchive tracking bugs for this issue:
Affects: fedora-all [bug 2290449]
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20696https://clearbluejar.github.io/posts/patch-tuesday-diffing-cve-2024-20696-windows-libarchive-rce/https://github.com/clearbluejar/CVE-2024-20696https://lists.debian.org/debian-lts-announce/2024/11/msg00007.htmlhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20696
2024-01-09
Published