First published: Sun Mar 02 2025(Updated: )
Last updated 23 April 2025
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Libarchive | <3.7.8 | |
debian/libarchive | <=3.4.3-2+deb11u1<=3.4.3-2+deb11u2<=3.6.2-1+deb12u2<=3.7.4-1.1<=3.7.4-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-25724 has been classified as a medium severity vulnerability due to its potential to cause a denial of service.
To fix CVE-2025-25724, upgrade to libarchive version 3.7.8 or later where the vulnerability is addressed.
CVE-2025-25724 can lead to a denial of service or other unspecified impacts when processing crafted TAR archives.
CVE-2025-25724 affects libarchive versions prior to 3.7.8.
Yes, CVE-2025-25724 can be exploited remotely if a vulnerable system processes a malicious TAR archive.