CVE-2026-4111
Last modified
CVE-2026-4111 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. EPSS estimates a 0.69% chance of exploitation in the next 30 days.
Description
A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processed, the decompression routine may enter a state where internal logic prevents forward progress. This condition results in an infinite loop that continuously consumes CPU resources. Because the archive passes checksum validation and appears structurally valid, affected applications cannot detect the issue before processing. This can allow attackers to cause persistent denial-of-service conditions in services that automatically process archives.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | All versions |
| Red Hat | Red Hat Enterprise Linux 10.0 Extended Update Support | All versions |
| Red Hat | Red Hat Enterprise Linux 9 | All versions |
| Red Hat | Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | All versions |
| Red Hat | Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | All versions |
| Red Hat | Red Hat Enterprise Linux 9.4 Extended Update Support | All versions |
| Red Hat | Red Hat Enterprise Linux 9.6 Extended Update Support | All versions |
| Red Hat | Red Hat OpenShift Container Platform 4.13 | All versions |
| Red Hat | Red Hat OpenShift Container Platform 4.14 | All versions |
| Red Hat | Red Hat OpenShift Container Platform 4.15 | All versions |
| Red Hat | Red Hat OpenShift Container Platform 4.16 | All versions |
| Red Hat | Red Hat OpenShift Container Platform 4.17 | All versions |
| Red Hat | Red Hat OpenShift Container Platform 4.18 | All versions |
| Red Hat | Red Hat OpenShift Container Platform 4.19 | All versions |
| Red Hat | Red Hat AI Inference Server 3.2 | All versions |
| Red Hat | Red Hat AI Inference Server 3.3 | All versions |
| Red Hat | Red Hat Discovery 2 | All versions |
| Red Hat | Red Hat Hardened Images | All versions |
| Red Hat | Red Hat Insights proxy 1.5 | All versions |
| Red Hat | Red Hat Update Infrastructure 5 | All versions |
| Red Hat | Red Hat Enterprise Linux 6 | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-4111?
How severe is CVE-2026-4111?
How do I fix CVE-2026-4111?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-41104Deserialization of untrusted data in Microsoft Planetary Com…7.5
- CVE-2026-41105Server-side request forgery (ssrf) in Azure Notification Ser…8.1
- CVE-2026-41106Url redirection to untrusted site ('open redirect') in M365 …9.3
- CVE-2026-41107External control of file name or path in Microsoft Edge (Chr…7.4
- CVE-2026-41108Heap-based buffer overflow in Microsoft Windows DNS allows a…7
- CVE-2026-41109Improper neutralization of special elements in output used b…8.8
- CVE-2026-41113sagredo qmail before 2026.04.07 allows tls_quit remote code …8.1
- CVE-2026-41115An improper authorization vulnerability has been identified …4.3
- CVE-2026-41116Dell Inventory Collector Client, versions prior to 13.8.0, c…6.3
- CVE-2026-41119Dell Live Optics Windows and Personal Edition collectors con…6.8
- CVE-2026-4112Improper neutralization of special elements used in an SQL c…7.2
- CVE-2026-41120Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, c…9.8
Are you affected by CVE-2026-4111?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
