CVE-2026-5121
CRITICAL
9.8
CVSS 3.1
Description
A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote attacker can exploit this by providing a specially crafted ISO9660 image, which can lead to a heap buffer overflow. This could potentially allow for arbitrary code execution on the affected system.
Metadata
Severity & Metrics
9.8
CRITICAL CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
SSVC — CISA Coordinator
Affected products (50)
| Vendor | Product | Platform | Versions |
|---|---|---|---|
| Red Hat | Red Hat AI Inference Server 3.2 | — | 1779223654 < * |
| Red Hat | Red Hat AI Inference Server 3.2 | — | 1779223651 < * |
| Red Hat | Red Hat AI Inference Server 3.2 | — | 1780681984 < * |
| Red Hat | Red Hat AI Inference Server 3.3 | — | 1778244559 < * |
| Red Hat | Red Hat AI Inference Server 3.3 | — | 1778244531 < * |
| Red Hat | Red Hat AI Inference Server 3.3 | — | 1778274666 < * |
| Red Hat | Red Hat AI Inference Server 3.3 | — | 1778244546 < * |
| Red Hat | Red Hat Discovery 2 | — | 1778156756 < * |
| Red Hat | Red Hat Enterprise Linux 10 | — | — |
| Red Hat | Red Hat Enterprise Linux 6 | — | — |
| Red Hat | Red Hat Enterprise Linux 7 Extended Lifecycle Support | — | 0:3.1.2-14.el7_9.2 < * |
| Red Hat | Red Hat Enterprise Linux 8 | — | 0:3.3.3-7.el8_10 < * |
| Red Hat | Red Hat Enterprise Linux 8.2 Advanced Update Support | — | 0:3.3.2-8.el8_2.2 < * |
| Red Hat | Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | — | 0:3.3.3-1.el8_4.2 < * |
| Red Hat | Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | — | 0:3.3.3-1.el8_4.2 < * |
| Red Hat | Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | — | 0:3.3.3-6.el8_6.1 < * |
| Red Hat | Red Hat Enterprise Linux 8.6 Telecommunications Update Service | — | 0:3.3.3-6.el8_6.1 < * |
| Red Hat | Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | — | 0:3.3.3-6.el8_6.1 < * |
| Red Hat | Red Hat Enterprise Linux 8.8 Telecommunications Update Service | — | 0:3.3.3-5.el8_8.2 < * |
| Red Hat | Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | — | 0:3.3.3-5.el8_8.2 < * |
| Red Hat | Red Hat Enterprise Linux 9 | — | 0:3.5.3-9.el9_7 < * |
| Red Hat | Red Hat Enterprise Linux 9 | — | 0:3.5.3-9.el9_7 < * |
| Red Hat | Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | — | 0:3.5.3-2.el9_0.4 < * |
| Red Hat | Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | — | 0:3.5.3-5.el9_2.2 < * |
| Red Hat | Red Hat Enterprise Linux 9.4 Extended Update Support | — | 0:3.5.3-5.el9_4 < * |
| Red Hat | Red Hat Enterprise Linux 9.6 Extended Update Support | — | 0:3.5.3-7.el9_6.1 < * |
| Red Hat | Red Hat Hardened Images | — | 3.8.7-1.hum1 < * |
| Red Hat | Red Hat Insights proxy 1.5 | — | 1776868961 < * |
| Red Hat | Red Hat OpenShift Container Platform 4.12 | — | 412.86.202604281506-0 < * |
| Red Hat | Red Hat OpenShift Container Platform 4.13 | — | 413.92.202605271328-0 < * |
| Red Hat | Red Hat OpenShift Container Platform 4.14 | — | 414.92.202605060243-0 < * |
| Red Hat | Red Hat OpenShift Container Platform 4.15 | — | 415.92.202605060220-0 < * |
| Red Hat | Red Hat OpenShift Container Platform 4.16 | — | 416.94.202604211449-0 < * |
| Red Hat | Red Hat OpenShift Container Platform 4.17 | — | 417.94.202605112123-0 < * |
| Red Hat | Red Hat OpenShift Container Platform 4.18 | — | 418.94.202604240015-0 < * |
| Red Hat | Red Hat OpenShift Container Platform 4.19 | — | 4.19.9.6.202605201155-0 < * |
| Red Hat | Red Hat Update Infrastructure 5 | — | 1776868774 < * |
| Red Hat | Red Hat Update Infrastructure 5 | — | 1776868744 < * |
| Red Hat | Red Hat Update Infrastructure 5 | — | 1776868772 < * |
| Red Hat | Red Hat Update Infrastructure 5 | — | 1776868842 < * |
| Red Hat | Red Hat Update Infrastructure 5 | — | 1777459441 < * |
| Red Hat | Red Hat Update Infrastructure 5 | — | 1777454300 < * |
| Red Hat | Red Hat Update Infrastructure 5 | — | 1777459504 < * |
| Red Hat | RHEL-8 based Middleware Containers | — | 7.13.5-4.1777325677 < * |
| Red Hat | RHEL-8 based Middleware Containers | — | 7.13.5-4.1777325711 < * |
| Red Hat | RHEL-8 based Middleware Containers | — | 7.13.5-4.1777325710 < * |
| Red Hat | RHEL-8 based Middleware Containers | — | 7.13.5-3.1777325680 < * |
| Red Hat | RHEL-8 based Middleware Containers | — | 7.13.5-4.1777325709 < * |
| Red Hat | RHEL-8 based Middleware Containers | — | 7.13.5-4.1777325680 < * |
| Red Hat | RHEL-8 based Middleware Containers | — | 7.13.5-4.1777325708 < * |
Weakness (CWE)
CVSS scores (2)
| Score | Severity | Version | Source | Vector |
|---|---|---|---|---|
| 9.8 | CRITICAL | 3.1 | adp | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| 7.5 | HIGH | 3.1 | cna | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
References (36)
- RHSA-2026:10065 https://access.redhat.com/errata/RHSA-2026:10065
- RHSA-2026:10097 https://access.redhat.com/errata/RHSA-2026:10097
- RHSA-2026:11768 https://access.redhat.com/errata/RHSA-2026:11768
- RHSA-2026:12071 https://access.redhat.com/errata/RHSA-2026:12071
- RHSA-2026:12274 https://access.redhat.com/errata/RHSA-2026:12274
- RHSA-2026:13812 https://access.redhat.com/errata/RHSA-2026:13812
- RHSA-2026:14773 https://access.redhat.com/errata/RHSA-2026:14773
- RHSA-2026:14937 https://access.redhat.com/errata/RHSA-2026:14937
- RHSA-2026:15087 https://access.redhat.com/errata/RHSA-2026:15087
- RHSA-2026:16008 https://access.redhat.com/errata/RHSA-2026:16008
- RHSA-2026:16009 https://access.redhat.com/errata/RHSA-2026:16009
- RHSA-2026:16030 https://access.redhat.com/errata/RHSA-2026:16030
- RHSA-2026:16174 https://access.redhat.com/errata/RHSA-2026:16174
- RHSA-2026:17596 https://access.redhat.com/errata/RHSA-2026:17596
- RHSA-2026:19724 https://access.redhat.com/errata/RHSA-2026:19724
- RHSA-2026:19725 https://access.redhat.com/errata/RHSA-2026:19725
- RHSA-2026:20040 https://access.redhat.com/errata/RHSA-2026:20040
- RHSA-2026:21690 https://access.redhat.com/errata/RHSA-2026:21690
- RHSA-2026:25096 https://access.redhat.com/errata/RHSA-2026:25096
- RHSA-2026:8510 https://access.redhat.com/errata/RHSA-2026:8510
- RHSA-2026:8517 https://access.redhat.com/errata/RHSA-2026:8517
- RHSA-2026:8521 https://access.redhat.com/errata/RHSA-2026:8521
- RHSA-2026:8534 https://access.redhat.com/errata/RHSA-2026:8534
- RHSA-2026:8864 https://access.redhat.com/errata/RHSA-2026:8864
- RHSA-2026:8866 https://access.redhat.com/errata/RHSA-2026:8866
- RHSA-2026:8867 https://access.redhat.com/errata/RHSA-2026:8867
- RHSA-2026:8873 https://access.redhat.com/errata/RHSA-2026:8873
- RHSA-2026:8908 https://access.redhat.com/errata/RHSA-2026:8908
- RHSA-2026:8944 https://access.redhat.com/errata/RHSA-2026:8944
- RHSA-2026:9026 https://access.redhat.com/errata/RHSA-2026:9026
- RHSA-2026:9592 https://access.redhat.com/errata/RHSA-2026:9592
- RHSA-2026:9832 https://access.redhat.com/errata/RHSA-2026:9832
- https://access.redhat.com/security/cve/CVE-2026-5121
- RHBZ#2452945 https://bugzilla.redhat.com/show_bug.cgi?id=2452945
- https://github.com/advisories/GHSA-2vwv-vqpv-v8vc
- https://github.com/libarchive/libarchive/pull/2934