REDHAT-BUG-1663887: Double Free
A double free vulnerability was found in libarchive in RAR decoder. A crafted archive could cause the application to crash.
Upstream issue:
https://github.com/libarchive/libarchive/pull/1105
Upstream patch:
https://github.com/libarchive/libarchive/pull/1105/commits/021efa522ad729ff0f5806c4ce53e4a6cc1daa31
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1663887?
The severity of REDHAT-BUG-1663887 is classified as high due to its potential to cause application crashes.
How do I fix REDHAT-BUG-1663887?
To fix REDHAT-BUG-1663887, you should apply the latest patches provided by the libarchive development team.
What systems are affected by REDHAT-BUG-1663887?
REDHAT-BUG-1663887 affects applications that utilize the libarchive library for RAR file decoding.
What type of vulnerability is REDHAT-BUG-1663887?
REDHAT-BUG-1663887 is a double free vulnerability found in the RAR decoder of libarchive.
Is REDHAT-BUG-1663887 under active development for a resolution?
Yes, REDHAT-BUG-1663887 is being actively addressed with upstream patches in development.