Количество 27
Количество 27
RLSA-2026:8492
Important: libarchive security update
GHSA-c75f-55f6-f63q
A flaw was found in libarchive. This heap out-of-bounds read vulnerability exists in the RAR archive processing logic due to improper validation of the LZSS sliding window size after transitions between compression methods. A remote attacker can exploit this by providing a specially crafted RAR archive, leading to the disclosure of sensitive heap memory information without requiring authentication or user interaction.
GHSA-2vwv-vqpv-v8vc
A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote attacker can exploit this by providing a specially crafted ISO9660 image, which can lead to a heap buffer overflow. This could potentially allow for arbitrary code execution on the affected system.
ELSA-2026-8492
ELSA-2026-8492: libarchive security update (IMPORTANT)
BDU:2026-07534
Уязвимость библиотеки libarchive, связанная с чтением за границами буфера в памяти, позволяющая нарушителю раскрыть защищаемую информацию
BDU:2026-07332
Уязвимость библиотеки архивирования Libarchive, связанная с целочисленным переполнением, позволяющая нарушителю вызвать отказ в обслуживании
ROS-20260507-73-0013
Уязвимость libarchive
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2026:8492 Important: libarchive security update | 1% Низкий | 6 месяцев назад | ||
GHSA-c75f-55f6-f63q A flaw was found in libarchive. This heap out-of-bounds read vulnerability exists in the RAR archive processing logic due to improper validation of the LZSS sliding window size after transitions between compression methods. A remote attacker can exploit this by providing a specially crafted RAR archive, leading to the disclosure of sensitive heap memory information without requiring authentication or user interaction. | CVSS3: 7.5 | 1% Низкий | 7 месяцев назад | |
GHSA-2vwv-vqpv-v8vc A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote attacker can exploit this by providing a specially crafted ISO9660 image, which can lead to a heap buffer overflow. This could potentially allow for arbitrary code execution on the affected system. | CVSS3: 9.8 | 1% Низкий | 6 месяцев назад | |
ELSA-2026-8492 ELSA-2026-8492: libarchive security update (IMPORTANT) | 1% Низкий | 6 месяцев назад | ||
BDU:2026-07534 Уязвимость библиотеки libarchive, связанная с чтением за границами буфера в памяти, позволяющая нарушителю раскрыть защищаемую информацию | CVSS3: 7.5 | 1% Низкий | 7 месяцев назад | |
BDU:2026-07332 Уязвимость библиотеки архивирования Libarchive, связанная с целочисленным переполнением, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 9.8 | 1% Низкий | 6 месяцев назад | |
ROS-20260507-73-0013 Уязвимость libarchive | CVSS3: 9.8 | 1% Низкий | 5 месяцев назад |
Уязвимостей на страницу