libarchive-3.5.3-6.el9_6

エラータID: AXSA:2025-10772:05

Release date: 
Friday, August 22, 2025 - 12:00
Subject: 
libarchive-3.5.3-6.el9_6
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

The libarchive programming library can create and read several different streaming archive formats, including GNU tar, cpio, and ISO 9660 CD-ROM images. Libarchive is used notably in the bsdtar utility, scripting language bindings such as python-libarchive, and several popular desktop file managers.

Security Fix(es):

* libarchive: Double free at archive_read_format_rar_seek_data() in archive_read_support_format_rar.c (CVE-2025-5914)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2025-5914
A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condition. Exploiting a double-free vulnerability can result in memory corruption, enabling an attacker to execute arbitrary code or cause a denial-of-service condition.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. libarchive-3.5.3-6.el9_6.src.rpm
    MD5: f16596c0fc05448e47955964b5f60e8b
    SHA-256: 2f5575ce362be6a268fe330ac34894402e3e8b394e60e6ff0b9a399b64ddcc19
    Size: 6.72 MB

Asianux Server 9 for x86_64
  1. bsdtar-3.5.3-6.el9_6.x86_64.rpm
    MD5: 95e8fe413d63e78a8715d98b958e2ea7
    SHA-256: eaf10dd899f1a8e584970a0ff9a302034a12f3ace64d06abf5bad60fe510b493
    Size: 61.65 kB
  2. libarchive-3.5.3-6.el9_6.i686.rpm
    MD5: 88a7ba03e6309c0f14e7720f1e7f034e
    SHA-256: 7a8f0e36a9303a5040514914e08d7cd882d0bb0713039288f9feb68d09065c4f
    Size: 434.51 kB
  3. libarchive-3.5.3-6.el9_6.x86_64.rpm
    MD5: 07fff8fe11358952eb56b9a79106f71f
    SHA-256: c5a5db9bcc26fb108e9fbe15560cf1aefae08a8da9fc75ff3b7a5dda464a5eed
    Size: 386.79 kB
  4. libarchive-devel-3.5.3-6.el9_6.i686.rpm
    MD5: 557bdb94018b274fbdae44bf5cd37fe7
    SHA-256: 760cad4ed48d57759099abaa5258e4aefcc01333b2b5fa7adf9c8fb277d1b2b6
    Size: 134.29 kB
  5. libarchive-devel-3.5.3-6.el9_6.x86_64.rpm
    MD5: 7a6234557a55e11cc6318af6754e4332
    SHA-256: f4dd40de0650b8d710804bd26afba9e3e58da807dec269455484c2c61610ad66
    Size: 134.28 kB