CNNVD-202511-410 Information

CNNVD ID

CNNVD-202511-410

CVE-2025-60753

  • CNNVD Published: 2025-11-05

Description (Chinese)

libarchive是libarchive开源的一款多格式存档和压缩库。 libarchive 3.8.1之前版本存在安全漏洞,该漏洞源于处理特制-s替换规则时内存分配不受限制,可能导致拒绝服务。

Description (English)

Libarchive is a multiformat archive and compressor library of the libarchive open source. There was a security loophole in the previous version of libarchive 3.8.1, which stemmed from the unrestricted distribution of memory when dealing with special-s replacement rules, which could lead to the denial of services.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

libarchive

Published

2025-11-05

Last Modified

2026-02-24

References

https://github.com/Papya-j/CVE/tree/main/CVE-2025-60753 https://github.com/libarchive/libarchive/issues/2725 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-60753

Patch

https://www.libarchive.org/

Share on: