[Git][security-tracker-team/security-tracker][master] Update status for CVE-2025-5918/libarchive

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jan 8 15:13:13 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
138fcf89 by Salvatore Bonaccorso at 2026-01-08T16:12:46+01:00
Update status for CVE-2025-5918/libarchive

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -74804,13 +74804,14 @@ CVE-2024-55595
 	REJECTED
 CVE-2025-5918 (A vulnerability has been identified in the libarchive library. This fl ...)
 	{DLA-4368-1}
-	- libarchive <unfixed> (bug #1107624)
+	- libarchive 3.8.4-1 (bug #1107624)
 	[trixie] - libarchive <no-dsa> (Minor issue)
 	[bookworm] - libarchive <no-dsa> (Minor issue)
 	NOTE: https://github.com/libarchive/libarchive/pull/2584
 	NOTE: Fixed by: https://github.com/libarchive/libarchive/commit/dcbf1e0ededa95849f098d154a25876ed5754bcf (v3.8.0)
 	NOTE: Regression: https://github.com/libarchive/libarchive/issues/2641
 	NOTE: Regression fixed by: https://github.com/libarchive/libarchive/commit/51b4c35bb38b7df4af24de7f103863dd79129b01
+	NOTE: Regression fixed by: https://github.com/libarchive/libarchive/commit/0dc4f71fcbfde97eac10a2c23188f2dfc74d7a5e (v3.8.1)
 CVE-2025-5917 (A vulnerability has been identified in the libarchive library. This fl ...)
 	{DLA-4368-1}
 	- libarchive 3.7.4-4 (bug #1107626)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/138fcf8900ff654bd6a726601d25171f46396e58

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/138fcf8900ff654bd6a726601d25171f46396e58
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260108/5d7bec11/attachment.htm>


More information about the debian-security-tracker-commits mailing list