Loading
Generated remediation guidance and an executive summary. No account required.
Libarchive before 3.7.4 allows name out-of-bounds access when a ZIP archive has an empty-name file and mac-ext is enabled. This occurs in slurp_central_directory in archive_read_support_format_zip.c.
Use CWE-125, Libarchive vendor hub and Libarchive product page to widen CVE-2024-37407 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-5914, CVE-2024-48958 and CVE-2024-48957 for nearby disclosures in the same product family.