CVE-2026-14164Disclosure

LOWCVSS 7.5 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A double free issue has been identified in libarchive's RAR5 reader. During parsing of a specially crafted RAR5 archive, the filtered_buf pointer may remain stale after being freed during unpacking state reinitialization. Subsequent processing of another archive entry can trigger a second free of the same memory region, resulting in a double-free condition. Successful exploitation may cause applications using the vulnerable libarchive API to terminate unexpectedly, leading to a denial of service.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-415

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-06-30: 2Patch / Workaround · 2026-06-30: 1Technical Details · 2026-06-30: 206-30
Signal classification1 categories
Disclosure
2100.0%
Referenced assets1 URL
By indicator
Full discourse2 posts
  • Upwind Security MDR@UpwindMDR
    Disclosure

    🚨 HIGH - Double-free in libarchive RAR5 reader via stale filtered_buf pointer (CVE-2026-14164) A double-free vulnerability exists in libarchive’s RAR5 reader component during archive unpacking when handling filtered data buffers. The root cause is a double-free/memory management flaw where the filtered_buf pointer can remain stale after being freed during unpacking state reinitialization. An attacker can exploit this by supplying a specially crafted RAR5 archive that triggers reinitialization and then forces processing of a subsequent entry, causing the same memory to be freed again without needing any special privileges beyond getting the file parsed. Successful exploitation can reliably crash applications and services using the libarchive API (including RH CoreOS tooling paths), resulting in denial of service. 👉 Affected: libarchive (RAR5 reader; versions not specified), rhcos | Upgrade to Vendor patch when available (no fix version provided)

    Post summary

    CVE-2026-14164 is a high‑severity double‑free bug in libarchive's RAR5 reader that can crash applications when a specially crafted archive is parsed; users should apply the vendor patch as soon as it is released.

    0000081
    232 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-14164 Double Free Vulnerability in libarchive RAR5 Reader Causing Denial of Service https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-14164

    Post summary

    The post announces CVE‑2026‑14164 as a double‑free flaw in libarchive’s RAR5 reader that can lead to a denial‑of‑service, with no proof of concept, exploit tool, or patch mentioned.

    00000114
    4.1K followersView on X

Explore more