libarchive

Direct Vulnerabilities

Known vulnerabilities in the libarchive package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Integer Overflow or Wraparound

*
  • L
Buffer Access with Incorrect Length Value

*
  • L
Double Free

*
  • L
NULL Pointer Dereference

*
  • L
CVE-2026-5121

<3.4.3-2+deb11u4
  • H
Out-of-bounds Read

<3.4.3-2+deb11u4
  • M
Incorrect Bitwise Shift of Integer

<3.4.3-2+deb11u4
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<3.4.3-2+deb11u4
  • L
CVE-2025-60753

*
  • M
Out-of-bounds Write

<3.4.3-2+deb11u3
  • M
Out-of-bounds Read

<3.4.3-2+deb11u3
  • M
Integer Overflow or Wraparound

<3.4.3-2+deb11u3
  • H
Integer Overflow or Wraparound

<3.4.3-2+deb11u3
  • L
CVE-2025-25724

*
  • L
NULL Pointer Dereference

*
  • H
CVE-2024-20696

<3.4.3-2+deb11u2
  • L
Race Condition

*
  • C
NULL Pointer Dereference

<3.4.3-2+deb11u2
  • M
Out-of-bounds Read

<3.4.3-2+deb11u2
  • H
Link Following

<3.4.3-2+deb11u1
  • H
Link Following

<3.4.3-2+deb11u1
  • M
Use After Free

<3.4.3-2+deb11u2
  • H
Improper Input Validation

<3.4.0-2
  • M
Out-of-bounds Read

<3.4.2-1
  • H
Use After Free

<3.4.0-1
  • L
Out-of-bounds Read

<3.3.3-4
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

<3.3.3-4
  • H
Use After Free

<3.3.3-2
  • H
Double Free

<3.3.3-2
  • M
NULL Pointer Dereference

<3.3.3-2
  • M
Out-of-Bounds

<3.3.3-2
  • M
Out-of-bounds Read

<3.2.2-4.1
  • M
Out-of-bounds Read

<3.2.2-4.2
  • H
Out-of-bounds Read

<3.2.2-4.1
  • M
Out-of-bounds Read

<3.2.2-3.1
  • M
Out-of-Bounds

<3.2.2-3.1
  • M
Out-of-Bounds

<3.2.2-3.1
  • L
NULL Pointer Dereference

<3.2.2-3.1
  • H
Out-of-Bounds

<3.2.1-5
  • M
Out-of-bounds Read

<3.2.1-5
  • H
Out-of-bounds Read

<3.2.1-5
  • H
Out-of-bounds Read

<3.2.1-6
  • H
Improper Input Validation

<3.2.1-1
  • L
Integer Overflow or Wraparound

<3.2.1-1
  • H
Improper Input Validation

<3.2.1-4
  • M
Resource Management Errors

<3.2.0-2
  • M
Integer Overflow or Wraparound

<3.2.1-1
  • H
Integer Overflow or Wraparound

<3.2.1-1
  • H
Out-of-Bounds

<3.2.1-1
  • H
Out-of-Bounds

<3.2.1-1
  • H
Out-of-Bounds

<3.2.0-2
  • M
Out-of-bounds Read

<3.2.0-2
  • M
Out-of-bounds Read

<3.2.1-1
  • M
Out-of-bounds Read

<3.2.0-2
  • H
Improper Input Validation

<3.2.0-2
  • L
Out-of-bounds Read

<3.2.0-2
  • M
NULL Pointer Dereference

<3.2.0-2
  • M
NULL Pointer Dereference

<3.2.0-2
  • H
Out-of-bounds Read

<3.2.0-2
  • M
NULL Pointer Dereference

<3.2.0-2
  • M
Out-of-bounds Read

<3.2.0-2
  • M
Out-of-bounds Read

<3.2.0-2
  • M
Improper Input Validation

<3.2.0-2
  • M
Improper Input Validation

<3.2.0-2
  • H
Integer Overflow or Wraparound

<3.2.0-2
  • M
Out-of-bounds Read

<3.2.0-2
  • M
Integer Overflow or Wraparound

<3.2.0-2
  • M
Out-of-Bounds

<3.2.0-2
  • H
NULL Pointer Dereference

<3.2.0-2
  • H
Improper Input Validation

<3.1.2-11.1
  • M
Directory Traversal

<3.1.2-11
  • M
Numeric Errors

<3.0.4-3
  • M
Out-of-Bounds

<2.8.5-5
  • M
Out-of-Bounds

<2.8.5-5
  • H
Resource Management Errors

<3.0.4-2
  • H
Out-of-Bounds

<3.0.4-2
  • L
CVE-2007-3645

<2.2.4-1
  • L
CVE-2007-3641

<2.2.4-1
  • L
CVE-2007-3644

<2.2.4-1
  • L
CVE-2006-5680

<1.3.1-1