Loading
Generated remediation guidance and an executive summary. No account required.
An error in the lha_read_file_header_1() function (archive_read_support_format_lha.c) in libarchive 3.2.2 allows remote attackers to trigger an out-of-bounds read memory access and subsequently cause a crash via a specially crafted archive.
Use CWE-125, Libarchive vendor hub and Libarchive product page to widen CVE-2017-5601 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-5914, CVE-2024-48958 and CVE-2024-48957 for nearby disclosures in the same product family.