ITSECURITYWHAT HAPPENED · DOES IT AFFECT YOU · WHAT TO DO
BoardVulnerabilities › CVE-2025-5914
7.8High CVE-2025-5914 Libarchive

A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function.

A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condition. Exploiting a double-free vulnerability can result in memory corruption, enabling an attacker to execute arbitrary code or cause a denial-of-service condition.

What happened

A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condition. Exploiting a double-free vulnerability can result in memory corruption, enabling an attacker to execute arbitrary code or cause a denial-of-service condition.

Does it affect you

Not enough information

No products recorded, so this cannot be matched against anything.

What to do

  • Apply the vendor patch named in this advisory.
    github.com
  • Follow the vendor advisory for the fixed release and any interim mitigation.
    github.com

Vendor's affected list

rhel
Exactly 6.0

Sources

A verdict here is derived from what you told us and what the vendor published. It is not an assessment of your environment. Why we never say you are safe.