Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2025-9420

Опубликовано: 27 июн. 2025
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2025-9420: libarchive security update (MODERATE)

[3.7.7-3]

  • Resolves: CVE-2025-25724

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

bsdtar

3.7.7-3.el10_0

libarchive-devel

3.7.7-3.el10_0

libarchive

3.7.7-3.el10_0

Oracle Linux x86_64

bsdtar

3.7.7-3.el10_0

libarchive-devel

3.7.7-3.el10_0

libarchive

3.7.7-3.el10_0

Связанные CVE

Связанные уязвимости

CVSS3: 4
ubuntu
5 месяцев назад

list_item_verbose in tar/util.c in libarchive through 3.7.7 does not check an strftime return value, which can lead to a denial of service or unspecified other impact via a crafted TAR archive that is read with a verbose value of 2. For example, the 100-byte buffer may not be sufficient for a custom locale.

CVSS3: 4
redhat
5 месяцев назад

list_item_verbose in tar/util.c in libarchive through 3.7.7 does not check an strftime return value, which can lead to a denial of service or unspecified other impact via a crafted TAR archive that is read with a verbose value of 2. For example, the 100-byte buffer may not be sufficient for a custom locale.

CVSS3: 4
nvd
5 месяцев назад

list_item_verbose in tar/util.c in libarchive through 3.7.7 does not check an strftime return value, which can lead to a denial of service or unspecified other impact via a crafted TAR archive that is read with a verbose value of 2. For example, the 100-byte buffer may not be sufficient for a custom locale.

CVSS3: 4
msrc
5 месяцев назад

Описание отсутствует

CVSS3: 4
debian
5 месяцев назад

list_item_verbose in tar/util.c in libarchive through 3.7.7 does not c ...