CVE-2025-5914
09.06.2025, 20:15
A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condition. Exploiting a double-free vulnerability can result in memory corruption, enabling an attacker to execute arbitrary code or cause a denial-of-service condition.Enginsight
| Vendor | Product | Version | 
|---|---|---|
| libarchive | libarchive | 𝑥 < 3.8.0 | 
| redhat | openshift_container_platform | 4.0 | 
| redhat | enterprise_linux | 6.0 | 
| redhat | enterprise_linux | 7.0 | 
| redhat | enterprise_linux | 8.0 | 
| redhat | enterprise_linux | 9.0 | 
| redhat | enterprise_linux | 10.0 | 
𝑥
= Vulnerable software versions

Debian Releases
Common Weakness Enumeration
Vulnerability Media Exposure
References