Libarchive v3.6.0 was discovered to contain an out-of-bounds read via the component zipx_lzma_alone_init.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3950-1 | libarchive security update |
EUVD |
EUVD-2022-30841 | Libarchive v3.6.0 was discovered to contain an out-of-bounds read via the component zipx_lzma_alone_init. |
Ubuntu USN |
USN-5374-1 | libarchive vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 03 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-03T21:46:12.619Z
Reserved: 2022-02-28T00:00:00.000Z
Link: CVE-2022-26280
No data.
Status : Modified
Published: 2022-03-28T22:15:09.637
Modified: 2025-11-03T22:15:57.873
Link: CVE-2022-26280
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN