HomeDefectsLIN1025-1615
Fixed

LIN1025-1615 : Security Advisory - libarchive - CVE-2025-5915

Created: Jun 9, 2025    Updated: Oct 21, 2025
Resolved Date: Oct 13, 2025
Found In Version: 10.25.33.1
Fix Version: 10.25.33.2
Severity: Standard
Applicable for: Wind River Linux LTS 25
Component/s: Userspace

Description

A vulnerability has been identified in the libarchive library. This flaw can lead to a heap b
uffer over-read due to the size of a filter block potentially exceeding the Lempel-Ziv-Storer
-Schieber (LZSS) window. This means the library may attempt to read beyond the allocated memo
ry buffer, which can result in unpredictable program behavior, crashes (denial of service), o
r the disclosure of sensitive information from adjacent memory regions.

CREATE(Triage):(User=lchen-cn) CVE-2025-5915 (https://nvd.nist.gov/vuln/detail/CVE-2025-5915)

CVEs