archive_read_format_rar_seek_data of the file archive_read_support_format_rar.c. The manipulation leads to double free.This vulnerability is traded as CVE-2025-5914. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.