Skip to content
Appaloosa Scout

Vulnerability · NVD

CVE-2025-5918

LOW 3.9

A vulnerability has been identified in the libarchive library. This flaw can be triggered when file streams are piped into bsdtar, potentially allowing for reading past the end of the file. This out-of-bounds read can lead to unintended consequences, including unpredictable program behavior, memory corruption, or a denial-of-service condition.

Attack vector : Local
Show raw CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:L
EPSS 0.35% exploit very unlikely percentile 28.0%

OS versions that fix this CVE

This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.

View on NVD ↗ Advisory · access.redhat.com Advisory · github.com