CVE-2025-5917 | libarchive up to 3.7.x archive_write_set_format_pax.c build_ustar_entry_name off-by-one (EUVD-2025-17574)
A vulnerability classified as critical has been found in libarchive up to 3.7.x. This affects the function build_ustar_entry_name of the file archive_write_set_format_pax.c. The manipulation leads to off-by-one.
This vulnerability is uniquely identified as CVE-2025-5917. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.