High severity7.3NVD Advisory· Published Jan 9, 2024· Updated Jun 17, 2026
CVE-2024-20697
CVE-2024-20697
Description
Windows libarchive Remote Code Execution Vulnerability
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
23cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:arm64:*+ 5 more
- cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:arm64:*range: <10.0.22621.3007
- cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:x64:*range: <10.0.22621.3007
- cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:arm64:*range: <10.0.22631.3007
- cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:x64:*range: <10.0.22631.3007
- (no CPE)range: 10.0.22621.0
- (no CPE)range: 10.0.22631.0
- cpe:2.3:o:microsoft:windows_server_2022_23h2:-:*:*:*:*:*:*:*
- osv-coords13 versionspkg:apk/chainguard/libarchivepkg:apk/chainguard/libarchive-devpkg:apk/chainguard/libarchive-docpkg:apk/chainguard/libarchive-toolspkg:apk/wolfi/libarchivepkg:apk/wolfi/libarchive-devpkg:apk/wolfi/libarchive-docpkg:apk/wolfi/libarchive-toolspkg:rpm/opensuse/libarchive&distro=openSUSE%20Leap%2015.6pkg:rpm/suse/libarchive&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP6pkg:rpm/suse/libarchive&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP6pkg:rpm/suse/libarchive&distro=SUSE%20Linux%20Micro%206.0pkg:rpm/suse/libarchive&distro=SUSE%20Linux%20Micro%206.1
< 3.7.4-r0+ 12 more
- (no CPE)range: < 3.7.4-r0
- (no CPE)range: < 3.7.4-r0
- (no CPE)range: < 3.7.4-r0
- (no CPE)range: < 3.7.4-r0
- (no CPE)range: < 3.7.4-r0
- (no CPE)range: < 3.7.4-r0
- (no CPE)range: < 3.7.4-r0
- (no CPE)range: < 3.7.4-r0
- (no CPE)range: < 3.7.2-150600.3.3.1
- (no CPE)range: < 3.7.2-150600.3.3.1
- (no CPE)range: < 3.7.2-150600.3.3.1
- (no CPE)range: < 3.6.2-3.1
- (no CPE)range: < 3.7.4-slfo.1.1_2.1
- Range: 10.0.22631.0
- Microsoft/Windows Server 2022, 23H2 Edition (Server Core installation)v5Range: 10.0.25398.0
Patches
Vulnerability mechanics
References
5- msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20697nvdPatchVendor Advisory
- www.openwall.com/lists/oss-security/2024/06/04/2nvd
- www.openwall.com/lists/oss-security/2024/06/05/1nvd
- github.com/advisories/GHSA-w6xv-37jv-7cjrnvd
- www.zerodayinitiative.com/blog/2024/4/17/cve-2024-20697-windows-libarchive-remote-code-execution-vulnerabilitynvd
News mentions
0No linked articles in our index yet.