libarchive-3.3.3-6.el8_10
エラータID: AXSA:2025-10771:04
リリース日:
2025/08/22 Friday - 11:56
題名:
libarchive-3.3.3-6.el8_10
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- libarchive には、メモリの二重解放の問題があるため、ローカルの
攻撃者により、メモリ破壊、任意のコードの実行、およびサービス拒否
攻撃を可能とする脆弱性が存在します。(CVE-2025-5914)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2025-5914
A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condition. Exploiting a double-free vulnerability can result in memory corruption, enabling an attacker to execute arbitrary code or cause a denial-of-service condition.
A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condition. Exploiting a double-free vulnerability can result in memory corruption, enabling an attacker to execute arbitrary code or cause a denial-of-service condition.
追加情報:
N/A
ダウンロード:
SRPMS
- libarchive-3.3.3-6.el8_10.src.rpm
MD5: c93edde4a655f65a19c90c82629cb79d
SHA-256: bb4ce9c031a01f4bfbbe3dc484bfb0f091e8467cedd7661e61059d057fd9232f
Size: 6.27 MB
Asianux Server 8 for x86_64
- bsdtar-3.3.3-6.el8_10.x86_64.rpm
MD5: d2c3f80349822f79469a26cb2ae470c1
SHA-256: fac4c85dc0916966e764ae39fa9f3f27c21cebf042988b969bf09cac452c5d81
Size: 70.07 kB - libarchive-3.3.3-6.el8_10.i686.rpm
MD5: 7989a86cc82085c086464d83c4fbacd1
SHA-256: 547dfc1654c9ee219a2927076f0d1223f5190489a8c7d05bf566178f2fe1166d
Size: 400.44 kB - libarchive-3.3.3-6.el8_10.x86_64.rpm
MD5: f27cb2e7f22a175a4316e79792c76db5
SHA-256: c459fd07c892ac1693bcdd2361046246b1b640c94f4a85464b65d07da09c82d2
Size: 359.16 kB - libarchive-devel-3.3.3-6.el8_10.i686.rpm
MD5: ff25493fa6acd63a1e9f34cbfe38a2b1
SHA-256: 6bfc629de52c51a230c036530442cb6dceb69308f6706eb15b36f53b61382949
Size: 130.93 kB - libarchive-devel-3.3.3-6.el8_10.x86_64.rpm
MD5: 96f5635caf27fb89886ed32489a5a15d
SHA-256: 351a15983eba58bfd269e343a02edcf090c50b085ce4a0f433b451b6c82ba058
Size: 130.91 kB