Debian Libarchive vulnerabilities
87 known vulnerabilities affecting debian/libarchive.
Total CVEs
87
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH30MEDIUM33LOW22
Vulnerabilities
Page 1 of 5
CVE-2026-5121CRITICALCVSS 9.82026
CVE-2026-5121 [CRITICAL] CVE-2026-5121: libarchive - A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerabi...
A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote attacker can exploit this by providing a specially crafted ISO9660 image, which can lead to a heap buffer overflow. This could potentially allow for arbitrary code execution on the affected system.
Scope: local
bookw
debian
CVE-2026-4424HIGHCVSS 7.52026
CVE-2026-4424 [HIGH] CVE-2026-4424: libarchive - A flaw was found in libarchive. This heap out-of-bounds read vulnerability exist...
A flaw was found in libarchive. This heap out-of-bounds read vulnerability exists in the RAR archive processing logic due to improper validation of the LZSS sliding window size after transitions between compression methods. A remote attacker can exploit this by providing a specially crafted RAR archive, leading to the disclosure of sensitive heap memory information
debian
CVE-2026-4111HIGHCVSS 7.52026
CVE-2026-4111 [HIGH] CVE-2026-4111: libarchive - A flaw was identified in the RAR5 archive decompression logic of the libarchive ...
A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. This condition results in an infinite loop that continuously consumes CPU
debian
CVE-2026-4426MEDIUMCVSS 6.52026
CVE-2026-4426 [MEDIUM] CVE-2026-4426: libarchive - A flaw was found in libarchive. An Undefined Behavior vulnerability exists in th...
A flaw was found in libarchive. An Undefined Behavior vulnerability exists in the zisofs decompression logic, caused by improper validation of a field (`pz_log2_bs`) read from ISO9660 Rock Ridge extensions. A remote attacker can exploit this by supplying a specially crafted ISO file. This can lead to incorrect memory allocation and potential application crashes,
debian
CVE-2026-5745MEDIUMCVSS 5.52026
CVE-2026-5745 [MEDIUM] CVE-2026-5745: libarchive - A flaw was found in libarchive. A NULL pointer dereference vulnerability exists ...
A flaw was found in libarchive. A NULL pointer dereference vulnerability exists in the ACL parsing logic, specifically within the archive_acl_from_text_nl() function. When processing a malformed ACL string (such as a bare "d" or "default" tag without subsequent fields), the function fails to perform adequate validation before advancing the pointer. An attacker ca
debian
CVE-2025-5914HIGHCVSS 7.8fixed in libarchive 3.6.2-1+deb12u3 (bookworm)2025
CVE-2025-5914 [HIGH] CVE-2025-5914: libarchive - A vulnerability has been identified in the libarchive library, specifically with...
A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condition. Exploiting a double-free vulnerability can result in memory corruption, enabling an attacker to execute arbitrary code or cause a denial-of-se
debian
CVE-2025-5915MEDIUMCVSS 6.6fixed in libarchive 3.6.2-1+deb12u3 (bookworm)2025
CVE-2025-5915 [MEDIUM] CVE-2025-5915: libarchive - A vulnerability has been identified in the libarchive library. This flaw can lea...
A vulnerability has been identified in the libarchive library. This flaw can lead to a heap buffer over-read due to the size of a filter block potentially exceeding the Lempel-Ziv-Storer-Schieber (LZSS) window. This means the library may attempt to read beyond the allocated memory buffer, which can result in unpredictable program behavior, crashes (denial of serv
debian
CVE-2025-5916LOWCVSS 3.9fixed in libarchive 3.6.2-1+deb12u3 (bookworm)2025
CVE-2025-5916 [LOW] CVE-2025-5916: libarchive - A vulnerability has been identified in the libarchive library. This flaw involve...
A vulnerability has been identified in the libarchive library. This flaw involves an integer overflow that can be triggered when processing a Web Archive (WARC) file that claims to have more than INT64_MAX - 4 content bytes. An attacker could craft a malicious WARC archive to induce this overflow, potentially leading to unpredictable program behavior, memory corrupt
debian
CVE-2025-5917LOWCVSS 2.8fixed in libarchive 3.6.2-1+deb12u3 (bookworm)2025
CVE-2025-5917 [LOW] CVE-2025-5917: libarchive - A vulnerability has been identified in the libarchive library. This flaw involve...
A vulnerability has been identified in the libarchive library. This flaw involves an 'off-by-one' miscalculation when handling prefixes and suffixes for file names. This can lead to a 1-byte write overflow. While seemingly small, such an overflow can corrupt adjacent memory, leading to unpredictable program behavior, crashes, or in specific circumstances, could be l
debian
CVE-2025-60753LOWCVSS 5.5fixed in libarchive 3.8.4-1 (forky)2025
CVE-2025-60753 [MEDIUM] CVE-2025-60753: libarchive - An issue was discovered in libarchive bsdtar before version 3.8.1 in function ap...
An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution in file tar/subst.c when processing crafted -s substitution rules. This can cause unbounded memory allocation and lead to denial of service (Out-of-Memory crash).
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 3.8.4-1)
sid: resolved (fixed in 3
debian
CVE-2025-5918LOWCVSS 3.9fixed in libarchive 3.4.3-2+deb11u3 (bullseye)2025
CVE-2025-5918 [LOW] CVE-2025-5918: libarchive - A vulnerability has been identified in the libarchive library. This flaw can be ...
A vulnerability has been identified in the libarchive library. This flaw can be triggered when file streams are piped into bsdtar, potentially allowing for reading past the end of the file. This out-of-bounds read can lead to unintended consequences, including unpredictable program behavior, memory corruption, or a denial-of-service condition.
Scope: local
bookworm:
debian
CVE-2025-1632LOWCVSS 4.8fixed in libarchive 3.7.4-2 (forky)2025
CVE-2025-1632 [MEDIUM] CVE-2025-1632: libarchive - A vulnerability was found in libarchive up to 3.7.7. It has been classified as p...
A vulnerability was found in libarchive up to 3.7.7. It has been classified as problematic. This affects the function list of the file bsdunzip.c. The manipulation leads to null pointer dereference. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclos
debian
CVE-2025-25724LOWCVSS 4.0fixed in libarchive 3.8.4-1 (forky)2025
CVE-2025-25724 [MEDIUM] CVE-2025-25724: libarchive - list_item_verbose in tar/util.c in libarchive through 3.7.7 does not check an st...
list_item_verbose in tar/util.c in libarchive through 3.7.7 does not check an strftime return value, which can lead to a denial of service or unspecified other impact via a crafted TAR archive that is read with a verbose value of 2. For example, the 100-byte buffer may not be sufficient for a custom locale.
Scope: local
bookworm: open
bullseye: open
forky: reso
debian
CVE-2024-20696HIGHCVSS 7.3fixed in libarchive 3.6.2-1+deb12u2 (bookworm)2024
CVE-2024-20696 [HIGH] CVE-2024-20696: libarchive - Windows libarchive Remote Code Execution Vulnerability
Windows libarchive Remote Code Execution Vulnerability
Scope: local
bookworm: resolved (fixed in 3.6.2-1+deb12u2)
bullseye: resolved (fixed in 3.4.3-2+deb11u2)
forky: resolved (fixed in 3.7.4-1.1)
sid: resolved (fixed in 3.7.4-1.1)
trixie: resolved (fixed in 3.7.4-1.1)
debian
CVE-2024-26256HIGHCVSS 7.8fixed in libarchive 3.6.2-1+deb12u1 (bookworm)2024
CVE-2024-26256 [HIGH] CVE-2024-26256: libarchive - Libarchive Remote Code Execution Vulnerability
Libarchive Remote Code Execution Vulnerability
Scope: local
bookworm: resolved (fixed in 3.6.2-1+deb12u1)
bullseye: resolved
forky: resolved (fixed in 3.7.2-2.1)
sid: resolved (fixed in 3.7.2-2.1)
trixie: resolved (fixed in 3.7.2-2.1)
debian
CVE-2024-48958HIGHCVSS 7.8fixed in libarchive 3.6.2-1+deb12u1 (bookworm)2024
CVE-2024-48958 [HIGH] CVE-2024-48958: libarchive - execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3...
execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
Scope: local
bookworm: resolved (fixed in 3.6.2-1+deb12u1)
bullseye: resolved
forky: resolved (fixed in 3.7.2-2.1)
sid: resolved (fixed in 3.7.2-2.1)
trixie: resolved (fixed in 3.7.2-2.1)
debian
CVE-2024-48957HIGHCVSS 7.8fixed in libarchive 3.6.2-1+deb12u1 (bookworm)2024
CVE-2024-48957 [HIGH] CVE-2024-48957: libarchive - execute_filter_audio in archive_read_support_format_rar.c in libarchive before 3...
execute_filter_audio in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
Scope: local
bookworm: resolved (fixed in 3.6.2-1+deb12u1)
bullseye: resolved
forky: resolved (fixed in 3.7.2-2.1)
sid: resolved (fixed in 3.7.2-2.1)
trixie: resolved (fixed in 3.7.2-2.1)
debian
CVE-2024-37407LOWCVSS 9.12024
CVE-2024-37407 [CRITICAL] CVE-2024-37407: libarchive - Libarchive before 3.7.4 allows name out-of-bounds access when a ZIP archive has ...
Libarchive before 3.7.4 allows name out-of-bounds access when a ZIP archive has an empty-name file and mac-ext is enabled. This occurs in slurp_central_directory in archive_read_support_format_zip.c.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
debian
CVE-2024-57970LOWCVSS 4.02024
CVE-2024-57970 [MEDIUM] CVE-2024-57970: libarchive - libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlin...
libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlink in archive_read_support_format_tar.c via a TAR archive because it mishandles truncation in the middle of a GNU long linkname.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
debian
CVE-2024-48615LOWCVSS 7.52024
CVE-2024-48615 [HIGH] CVE-2024-48615: libarchive - Null Pointer Dereference vulnerability in libarchive 3.7.6 and earlier when runn...
Null Pointer Dereference vulnerability in libarchive 3.7.6 and earlier when running program bsdtar in function header_pax_extension at rchive_read_support_format_tar.c:1844:8.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
debian
1 / 5Next →