Windows libarchive Remote Code Execution Vulnerability
No sign of exploitation. No public exploitation artifact known so far.
Official vendor statements in CSAF/VEX format: whether their product is affected, already fixed, or ruled out — and why. These are the vendor's assertions, not Vexday's judgment.
A flaw in the Windows version of libarchive (a file extraction library) allows attackers to run malicious code on a computer by crafting a specially designed archive file. When a user extracts this file, the attacker's code executes automatically.
Buffer overflow vulnerability (CWE-122) in Windows libarchive's archive extraction routine allows remote code execution through maliciously crafted archive files. Exploitation requires user interaction to extract the malicious archive; successful exploitation results in arbitrary code execution with the privileges of the extracting user.