HomeDefectsLIN1021-16015
Fixed

LIN1021-16015 : Security Advisory - libarchive - CVE-2025-5914

Created: Jun 9, 2025    Updated: Dec 7, 2025
Resolved Date: Nov 27, 2025
Found In Version: 10.21.20.1
Fix Version: 10.21.20.26
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

A vulnerability has been identified in the libarchive library, specifically within the archiv
e_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultim
ately lead to a double-free condition. Exploiting a double-free vulnerability can result in m
emory corruption, enabling an attacker to execute arbitrary code or cause a denial-of-service
 condition.

CREATE(Triage):(User=lchen-cn) CVE-2025-5914 (https://nvd.nist.gov/vuln/detail/CVE-2025-5914)

CVEs