7-zip

7-zip

33 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.94%
  • Veröffentlicht 29.07.2026 17:17:13
  • Zuletzt bearbeitet 07.08.2026 20:48:32

7-Zip XZ Decompression Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of 7-Zip. User interaction is required to exploit this vulnerability...

  • EPSS 0.12%
  • Veröffentlicht 28.06.2026 02:16:32
  • Zuletzt bearbeitet 07.08.2026 20:47:38

7-Zip for Windows through 26.01 fails to preserve the Mark-of-the-Web when extracting a crafted RAR5 archive, because its guard that suppresses an archive-supplied Zone.Identifier stream matches the exact name 'Zone.Identifier' while a RAR5 STM recor...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 05.06.2026 16:20:19
  • Zuletzt bearbeitet 08.06.2026 18:00:40

7-Zip is a file archiver with a high compression ratio. Versions 9.18 through 26.00 contain a heap out-of-bounds read in 7-Zip Ar handler BSD SYMDEF parser. A 4-byte heap out-of-bounds read exists in the Unix ar archive parser in 7-Zip. When parsing ...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 05.06.2026 16:09:31
  • Zuletzt bearbeitet 08.06.2026 18:16:33

7-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an off-by-one out-of-bounds read vulnerability in the ParseDepedencyExpression function of the UEFI firmware image parser(CPP/7zip/Archive/UefiHandler.cpp). T...

Exploit
  • EPSS 0.18%
  • Veröffentlicht 05.06.2026 15:56:34
  • Zuletzt bearbeitet 08.06.2026 18:03:38

7-Zip is a file archiver with a high compression ratio. Versions 9.18 through 26.00 contain an uninitialized heap read in the SquashFS archive handler caused by a sparsely populated index array. In the SquashFS handler, _blockToNode is allocated with...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 05.06.2026 15:48:49
  • Zuletzt bearbeitet 08.06.2026 17:54:13

7-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain an off-by-one heap out-of-bounds read in the WIM (Windows Imaging) archive handler's security descriptor lookup. In CHandler::GetSecurity (CPP/7zip/Archive/Wi...

Exploit
  • EPSS 0.19%
  • Veröffentlicht 05.06.2026 15:19:04
  • Zuletzt bearbeitet 10.06.2026 10:45:47

7-Zip is a file archiver with a high compression ratio. Versions 9.11 through 26.00 contain a heap out-of-bounds read of up to 3 bytes in the UDF disc image handler's File Identifier Descriptor parser. In CFileId::Parse (CPP/7zip/Archive/Udf/UdfIn.cp...

Exploit
  • EPSS 0.28%
  • Veröffentlicht 05.06.2026 15:17:38
  • Zuletzt bearbeitet 11.06.2026 18:02:03

7-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an An uninitialized memory disclosure vulnerability in the UEFI capsule (.scap) parser in 7-Zip. The OpenCapsule function allocates a heap buffer of attacker-...

Medienbericht Exploit
  • EPSS 1.12%
  • Veröffentlicht 05.06.2026 13:57:43
  • Zuletzt bearbeitet 08.06.2026 20:17:01

7-Zip is a file archiver with a high compression ratio. Versions 26.00 and prior contain a heap buffer overflow vulnerability caused by an under-allocation in the NTFS compressed stream buffer (GetCuSize shift UB), potentially allowing attackers to c...

Exploit
  • EPSS 0.32%
  • Veröffentlicht 05.06.2026 13:51:55
  • Zuletzt bearbeitet 08.06.2026 18:16:33

7-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain a heap memory disclosure via SquashFS fragment offset integer overflow on 32-bit builds. 32-bit integer overflow in the SquashFS ReadBlock function allows an ...