CVE-2026-4426 Details
Description
A flaw was found in libarchive. An Undefined Behavior vulnerability exists in the zisofs decompression logic, caused by improper validation of a field (`pz_log2_bs`) read from ISO9660 Rock Ridge extensions. A remote attacker can exploit this by supplying a specially crafted ISO file. This can lead to incorrect memory allocation and potential application crashes, resulting in a denial-of-service (DoS) condition.
A vulnerability causing undefined behavior has been identified in the libarchive library's zisofs decompression logic. This issue arises from inadequate validation of the pz_log2_bs field, which is read from ISO9660 Rock Ridge extensions and used as a shift exponent. A remote attacker can exploit this vulnerability by providing a specially crafted ISO file, which can lead to incorrect memory allocation and application crashes, causing a denial-of-service condition.
To mitigate this vulnerability, avoid processing untrusted ISO9660 images with libarchive. Ensure that ISO files are sourced from trusted entities.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Mar 20, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://access.redhat.com/errata/RHSA-2026:8944 | [email protected] | |
| https://access.redhat.com/security/cve/CVE-2026-4426 | [email protected] | Third Party Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=2449010 | [email protected] | Issue TrackingThird Party Advisory |
| https://github.com/libarchive/libarchive/pull/2897 | [email protected] | Issue TrackingPatch |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-1335 | Incorrect Bitwise Shift of Integer | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| libarchive libarchive | All versions |
CPE
Remediation
| |
| redhat hardened images | All versions |
CPE
Remediation
| |
| redhat openshift container platform | 4.0 |
CPE
Remediation
| |
| redhat enterprise linux | 6.0 7.0 8.0 9.0 10.0 |
CPE
Remediation
| |
Change History
8 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 1, 2026 | CVE Modified | [email protected] |
| Aug 31, 2026 | CVE Modified | [email protected] |
| Aug 21, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| May 3, 2026 | CVE Modified | [email protected] |
| Apr 28, 2026 | Initial Analysis | [email protected] |
| Mar 19, 2026 | New CVE Received | [email protected] |