Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
libarchive vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2011-1777
Multiple buffer overflows in the (1) heap_add_entry and (2) relocate_dir functions in archive_read_support_format_iso9660.c in libarchive up to and including 2.8.5 allow remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via...
Freebsd Libarchive
Freebsd Libarchive 2.0
Freebsd Libarchive 2.1
Freebsd Libarchive 2.2
Freebsd Libarchive 2.2.3
Freebsd Libarchive 2.3
Freebsd Libarchive 2.4
Freebsd Libarchive 2.5
Freebsd Libarchive 2.6
Freebsd Libarchive 2.6.1
Freebsd Libarchive 2.6.2
Freebsd Libarchive 2.7.0
6.8
CVSSv2
CVE-2011-1778
Buffer overflow in libarchive up to and including 2.8.5 allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted TAR archive.
Freebsd Libarchive
Freebsd Libarchive 2.0
Freebsd Libarchive 2.1
Freebsd Libarchive 2.2
Freebsd Libarchive 2.2.3
Freebsd Libarchive 2.3
Freebsd Libarchive 2.4
Freebsd Libarchive 2.5
Freebsd Libarchive 2.6
Freebsd Libarchive 2.6.1
Freebsd Libarchive 2.6.2
Freebsd Libarchive 2.7.0
5.5
CVSSv3
CVE-2015-8915
bsdcpio in libarchive prior to 3.2.0 allows remote malicious users to cause a denial of service (invalid read and crash) via crafted cpio file.
Libarchive Libarchive
7.8
CVSSv3
CVE-2024-48957
execute_filter_audio in archive_read_support_format_rar.c in libarchive prior to 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
Libarchive Libarchive
7.8
CVSSv3
CVE-2024-48958
execute_filter_delta in archive_read_support_format_rar.c in libarchive prior to 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.
Libarchive Libarchive
5.5
CVSSv3
CVE-2019-11463
A memory leak in archive_read_format_zip_cleanup in archive_read_support_format_zip.c in libarchive 3.3.4-dev allows remote malicious users to cause a denial of service via a crafted ZIP file because of a HAVE_LZMA_H typo. NOTE: this only affects users who downloaded the developm...
Libarchive Libarchive
5.3
CVSSv3
CVE-2023-30571
Libarchive up to and including 3.6.2 can cause directories to have world-writable permissions. The umask() call inside archive_write_disk_posix.c changes the umask of the whole process for a very short period of time; a race condition with another thread can lead to a permanent u...
Libarchive Libarchive
9.1
CVSSv3
CVE-2024-37407
Libarchive prior to 3.7.4 allows name out-of-bounds access when a ZIP archive has an empty-name file and mac-ext is enabled. This occurs in slurp_central_directory in archive_read_support_format_zip.c.
Libarchive Libarchive
5.5
CVSSv3
CVE-2016-10209
The archive_wstring_append_from_mbs function in archive_string.c in libarchive 3.2.2 allows remote malicious users to cause a denial of service (NULL pointer dereference and application crash) via a crafted archive file.
Libarchive Libarchive 3.2.2
5.5
CVSSv3
CVE-2016-10349
The archive_le32dec function in archive_endian.h in libarchive 3.2.2 allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
Libarchive Libarchive 3.2.2
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
path traversal
CVE-2025-2657
CVE-2025-30066
CVE-2025-24813
apache commons vfs
CVE-2025-2478
validation
CVE-2025-2674
code injection
medical card generation system
microsoft edge (chromium-based)
CVE-2025-2688
cicadascms
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »