CVE-2024-48958
published 2024-10-10CVE-2024-48958: execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can…
PriorityP338high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
0.55%
42.4th percentile
execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
Affected
20 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_18.4_and_ipados | — | — |
| apple | macos_sequoia | — | — |
| apple | tvos | — | — |
| apple | visionos | — | — |
| apple | watchos | — | — |
| debian | libarchive | < libarchive 3.6.2-1+deb12u1 (bookworm) | libarchive 3.6.2-1+deb12u1 (bookworm) |
| libarchive | libarchive | >= 0 < 3.6.2-1+deb12u1 | 3.6.2-1+deb12u1 |
| libarchive | libarchive | >= 0 < 3.7.2-2.1 | 3.7.2-2.1 |
| libarchive | libarchive | >= 0 < 3.7.2-2.1 | 3.7.2-2.1 |
| libarchive | libarchive | >= 0 < 3.4.0-2ubuntu1.3 | 3.4.0-2ubuntu1.3 |
| libarchive | libarchive | >= 0 < 3.6.0-1ubuntu1.2 | 3.6.0-1ubuntu1.2 |
| libarchive | libarchive | >= 0 < 3.7.2-2ubuntu0.2 | 3.7.2-2ubuntu0.2 |
| libarchive | libarchive | >= 0 < 3.1.2-7ubuntu2.8+esm3 | 3.1.2-7ubuntu2.8+esm3 |
| libarchive | libarchive | >= 0 < 3.1.2-11ubuntu0.16.04.8+esm1 | 3.1.2-11ubuntu0.16.04.8+esm1 |
| libarchive | libarchive | >= 0 < 3.2.2-3.1ubuntu0.7+esm1 | 3.2.2-3.1ubuntu0.7+esm1 |
| libarchive | libarchive | >= 3.6.0 < 3.7.5 | 3.7.5 |
| msrc | azl3_libarchive_3.7.1-2_on_azure_linux_3.0 | — | — |
| msrc | azl3_libarchive_3.7.7-1_on_azure_linux_3.0 | — | — |
| msrc | cbl2_libarchive_3.6.1-4_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_libarchive_3.6.1-6_on_cbl_mariner_2.0 | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv9.8CRITICAL
vendor_ubuntu9.8CRITICAL
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
libarchive vulnerabilities
osv·2024-10-16·CVSS 9.8
CVE-2022-36227 [CRITICAL] libarchive vulnerabilities
libarchive vulnerabilities
It was discovered that libarchive mishandled certain memory checks,
which could result in a NULL pointer dereference. An attacker could
potentially use this issue to cause a denial of service. This issue
only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS,
Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-36227)
It was discovered that libarchive mishandled certain memory operations,
which could result in an out-of-bounds memory access. An attacker could
potentially use this issue to cause a denial of service. This issue only
affected Ubuntu 22.04 LTS and Ubuntu 24.04 LTS.
(CVE-2024-48957, CVE-2024-48958)
GHSA
GHSA-9mw4-2ppr-4mcg: execute_filter_delta in archive_read_support_format_rar
ghsa_unreviewed·2024-10-10
CVE-2024-48958 [HIGH] CWE-125 GHSA-9mw4-2ppr-4mcg: execute_filter_delta in archive_read_support_format_rar
execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
OSV
CVE-2024-48958: execute_filter_delta in archive_read_support_format_rar
osv·2024-10-10·CVSS 7.8
CVE-2024-48958 [HIGH] CVE-2024-48958: execute_filter_delta in archive_read_support_format_rar
execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
Apple
CVE-2025-24194: watchOS 11.4
vendor_apple·2025-04-01·CVSS 7.8
CVE-2025-24194 [HIGH] CVE-2025-24194: watchOS 11.4
Apple Security Update: About the security content of watchOS 11.4
Product: watchOS
Version: 11.4
CVE: CVE-2025-24194
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
Apple
CVE-2024-48958: watchOS 11.4
vendor_apple·2025-04-01·CVSS 7.8
CVE-2024-48958 [HIGH] CVE-2024-48958: watchOS 11.4
Apple Security Update: About the security content of watchOS 11.4
Product: watchOS
Version: 11.4
CVE: CVE-2024-48958
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
Apple
CVE-2025-24194: tvOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24194 [HIGH] CVE-2025-24194: tvOS 18.4
Apple Security Update: About the security content of tvOS 18.4
Product: tvOS
Version: 18.4
CVE: CVE-2025-24194
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
Apple
CVE-2025-24194: visionOS 2.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24194 [HIGH] CVE-2025-24194: visionOS 2.4
Apple Security Update: About the security content of visionOS 2.4
Product: visionOS
Version: 2.4
CVE: CVE-2025-24194
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
Apple
CVE-2024-48958: visionOS 2.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-48958 [HIGH] CVE-2024-48958: visionOS 2.4
Apple Security Update: About the security content of visionOS 2.4
Product: visionOS
Version: 2.4
CVE: CVE-2024-48958
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
Apple
CVE-2024-48958: iOS 18.4 and iPadOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-48958 [HIGH] CVE-2024-48958: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2024-48958
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
Apple
CVE-2024-48958: tvOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-48958 [HIGH] CVE-2024-48958: tvOS 18.4
Apple Security Update: About the security content of tvOS 18.4
Product: tvOS
Version: 18.4
CVE: CVE-2024-48958
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
Apple
CVE-2025-24194: iOS 18.4 and iPadOS 18.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2025-24194 [HIGH] CVE-2025-24194: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24194
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
Apple
CVE-2024-48958: macOS Sequoia 15.4
vendor_apple·2025-03-31·CVSS 7.8
CVE-2024-48958 [HIGH] CVE-2024-48958: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2024-48958
Component: CVE-2024-48958
Ubuntu
libarchive vulnerabilities
vendor_ubuntu·2024-10-16·CVSS 9.8
CVE-2024-48958 [CRITICAL] libarchive vulnerabilities
Title: libarchive vulnerabilities
Summary: Several security issues were fixed in libarchive.
It was discovered that libarchive mishandled certain memory checks,
which could result in a NULL pointer dereference. An attacker could
potentially use this issue to cause a denial of service. This issue
only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS,
Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-36227)
It was discovered that libarchive mishandled certain memory operations,
which could result in an out-of-bounds memory access. An attacker could
potentially use this issue to cause a denial of service. This issue only
affected Ubuntu 22.04 LTS and Ubuntu 24.04 LTS.
(CVE-2024-48957, CVE-2024-48958)
Instructions: In general, a standard system update will make all the necessar
Red Hat
libarchive: Out-of-bounds access in libarchive's RAR file handling
vendor_redhat·2024-10-10·CVSS 7.8
CVE-2024-48958 [HIGH] CWE-125 libarchive: Out-of-bounds access in libarchive's RAR file handling
libarchive: Out-of-bounds access in libarchive's RAR file handling
execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
A flaw was found in the libarchive library. An out-of-bounds access in the execute_filter_delta function in the libarchive/archive_read_support_format_rar.c file can be triggered due to a missing validation when a specially crafted RAR archive is processed. This issue may cause the application linked to the library to crash, resulting in denial of service.
Statement: The libarchive library as shipped in Red Hat Enterprise Linux 6, 7, 8, 9 and Red Hat OpenShift Container Platform 4 is not affected by this vulnerability because the vulnerable code was i
Microsoft
execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
vendor_msrc·2024-10-08·CVSS 7.8
CVE-2024-48958 [HIGH] CWE-125 execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Marin
Debian
CVE-2024-48958: libarchive - execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3...
vendor_debian·2024·CVSS 7.8
CVE-2024-48958 [HIGH] CVE-2024-48958: libarchive - execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3...
execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
Scope: local
bookworm: resolved (fixed in 3.6.2-1+deb12u1)
bullseye: resolved
forky: resolved (fixed in 3.7.2-2.1)
sid: resolved (fixed in 3.7.2-2.1)
trixie: resolved (fixed in 3.7.2-2.1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/libarchive/libarchive/compare/v3.7.4...v3.7.5https://github.com/libarchive/libarchive/pull/2148https://github.com/terrynini/CVE-Reports/tree/main/CVE-2024-48958http://seclists.org/fulldisclosure/2025/Apr/11http://seclists.org/fulldisclosure/2025/Apr/12http://seclists.org/fulldisclosure/2025/Apr/13http://seclists.org/fulldisclosure/2025/Apr/4http://seclists.org/fulldisclosure/2025/Apr/8
2024-10-10
Published