CVE-2025-11579
EUVD-2025-3371110.10.2025, 12:15
github.com/nwaples/rardecode versions <=2.1.1 fail to restrict the dictionary size when reading large RAR dictionary sizes, which allows an attacker to provide a specially crafted RAR file and cause Denial of Service via an Out Of Memory Crash.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| nwaples | rardecode | 𝑥 ≤ 2.1.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration