Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 15

Количество 15

ubuntu логотип

CVE-2026-4111

5 месяцев назад

A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. This condition results in an infinite loop that continuously consumes CPU resources. Because the archive passes checksum validation and appears structurally valid, affected applications cannot detect the issue before processing. This can allow attackers to cause persistent denial-of-service conditions in services that automatically process archives.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-4111

5 месяцев назад

A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. This condition results in an infinite loop that continuously consumes CPU resources. Because the archive passes checksum validation and appears structurally valid, affected applications cannot detect the issue before processing. This can allow attackers to cause persistent denial-of-service conditions in services that automatically process archives.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-4111

5 месяцев назад

A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. This condition results in an infinite loop that continuously consumes CPU resources. Because the archive passes checksum validation and appears structurally valid, affected applications cannot detect the issue before processing. This can allow attackers to cause persistent denial-of-service conditions in services that automatically process archives.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-4111

5 месяцев назад

Libarchive: infinite loop denial of service in rar5 decompression via archive_read_data() in libarchive

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-4111

5 месяцев назад

A flaw was identified in the RAR5 archive decompression logic of the l ...

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2026:5080

4 месяца назад

Important: libarchive security update

EPSS: Низкий
rocky логотип

RLSA-2026:5063

4 месяца назад

Important: libarchive security update

EPSS: Низкий
github логотип

GHSA-xrqh-48jh-pjv2

5 месяцев назад

A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. This condition results in an infinite loop that continuously consumes CPU resources. Because the archive passes checksum validation and appears structurally valid, affected applications cannot detect the issue before processing. This can allow attackers to cause persistent denial-of-service conditions in services that automatically process archives.

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2026-5080

4 месяца назад

ELSA-2026-5080: libarchive security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-5063

4 месяца назад

ELSA-2026-5063: libarchive security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2026-07260

5 месяцев назад

Уязвимость библиотеки архивирования Libarchive, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260507-73-0014

3 месяца назад

Уязвимость libarchive

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20797-1

2 месяца назад

Security update for libarchive

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2599-1

около 1 месяца назад

Security update for libarchive

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2490-1

около 1 месяца назад

Security update for libarchive

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-4111

A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. This condition results in an infinite loop that continuously consumes CPU resources. Because the archive passes checksum validation and appears structurally valid, affected applications cannot detect the issue before processing. This can allow attackers to cause persistent denial-of-service conditions in services that automatically process archives.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-4111

A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. This condition results in an infinite loop that continuously consumes CPU resources. Because the archive passes checksum validation and appears structurally valid, affected applications cannot detect the issue before processing. This can allow attackers to cause persistent denial-of-service conditions in services that automatically process archives.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-4111

A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. This condition results in an infinite loop that continuously consumes CPU resources. Because the archive passes checksum validation and appears structurally valid, affected applications cannot detect the issue before processing. This can allow attackers to cause persistent denial-of-service conditions in services that automatically process archives.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
msrc логотип
CVE-2026-4111

Libarchive: infinite loop denial of service in rar5 decompression via archive_read_data() in libarchive

CVSS3: 7.5
1%
Низкий
5 месяцев назад
debian логотип
CVE-2026-4111

A flaw was identified in the RAR5 archive decompression logic of the l ...

CVSS3: 7.5
1%
Низкий
5 месяцев назад
rocky логотип
RLSA-2026:5080

Important: libarchive security update

1%
Низкий
4 месяца назад
rocky логотип
RLSA-2026:5063

Important: libarchive security update

1%
Низкий
4 месяца назад
github логотип
GHSA-xrqh-48jh-pjv2

A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. This condition results in an infinite loop that continuously consumes CPU resources. Because the archive passes checksum validation and appears structurally valid, affected applications cannot detect the issue before processing. This can allow attackers to cause persistent denial-of-service conditions in services that automatically process archives.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
oracle-oval логотип
ELSA-2026-5080

ELSA-2026-5080: libarchive security update (IMPORTANT)

4 месяца назад
oracle-oval логотип
ELSA-2026-5063

ELSA-2026-5063: libarchive security update (IMPORTANT)

4 месяца назад
fstec логотип
BDU:2026-07260

Уязвимость библиотеки архивирования Libarchive, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
5 месяцев назад
redos логотип
ROS-20260507-73-0014

Уязвимость libarchive

CVSS3: 7.5
1%
Низкий
3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20797-1

Security update for libarchive

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2599-1

Security update for libarchive

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2490-1

Security update for libarchive

около 1 месяца назад

Уязвимостей на страницу