CVE-2025-5916
09.06.2025, 20:15
A vulnerability has been identified in the libarchive library. This flaw involves an integer overflow that can be triggered when processing a Web Archive (WARC) file that claims to have more than INT64_MAX - 4 content bytes. An attacker could craft a malicious WARC archive to induce this overflow, potentially leading to unpredictable program behavior, memory corruption, or a denial-of-service condition within applications that process such archives using libarchive.Enginsight
Vendor | Product | Version |
---|---|---|
libarchive | libarchive | 𝑥 < 3.8.0 |
redhat | openshift_container_platform | 4.0 |
redhat | enterprise_linux | 6.0 |
redhat | enterprise_linux | 7.0 |
redhat | enterprise_linux | 8.0 |
redhat | enterprise_linux | 9.0 |
redhat | enterprise_linux | 10.0 |
𝑥
= Vulnerable software versions

Debian Releases