Search CVE reports
1 – 10 of 35 results
7-Zip XZ Decompression Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of 7-Zip. User interaction is required to...
2 affected packages
7zip, p7zip
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| 7zip | Needs evaluation | Needs evaluation | Needs evaluation | — | — |
| p7zip | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
7-Zip for Windows through 26.01 fails to preserve the Mark-of-the-Web when extracting a crafted RAR5 archive, because its guard that suppresses an archive-supplied Zone.Identifier stream matches the exact name 'Zone.Identifier'...
1 affected package
7zip
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| 7zip | Not affected | Not affected | Not affected | — | — |
7-Zip is a file archiver with a high compression ratio. Versions 9.18 through 26.00 contain a heap out-of-bounds read in 7-Zip Ar handler BSD SYMDEF parser. A 4-byte heap out-of-bounds read exists in the Unix ar archive parser in...
2 affected packages
7zip, p7zip
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| 7zip | Needs evaluation | Needs evaluation | Needs evaluation | — | — |
| p7zip | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
7-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an off-by-one out-of-bounds read vulnerability in the ParseDepedencyExpression function of the UEFI firmware...
2 affected packages
7zip, p7zip
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| 7zip | Needs evaluation | Needs evaluation | Needs evaluation | — | — |
| p7zip | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
7-Zip is a file archiver with a high compression ratio. Versions 9.18 through 26.00 contain an uninitialized heap read in the SquashFS archive handler caused by a sparsely populated index array. In the SquashFS handler,...
2 affected packages
7zip, p7zip
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| 7zip | Needs evaluation | Needs evaluation | Needs evaluation | — | — |
| p7zip | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
7-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain an off-by-one heap out-of-bounds read in the WIM (Windows Imaging) archive handler's security descriptor lookup. In CHandler::GetSecurity...
2 affected packages
7zip, p7zip
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| 7zip | Needs evaluation | Needs evaluation | Needs evaluation | — | — |
| p7zip | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
7-Zip is a file archiver with a high compression ratio. Versions 9.11 through 26.00 contain a heap out-of-bounds read of up to 3 bytes in the UDF disc image handler's File Identifier Descriptor parser. In...
2 affected packages
7zip, p7zip
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| 7zip | Needs evaluation | Needs evaluation | Needs evaluation | — | — |
| p7zip | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
7-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an An uninitialized memory disclosure vulnerability in the UEFI capsule (.scap) parser in 7-Zip. The OpenCapsule function allocates a heap...
2 affected packages
7zip, p7zip
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| 7zip | Needs evaluation | Needs evaluation | Needs evaluation | — | — |
| p7zip | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
7-Zip is a file archiver with a high compression ratio. Versions 26.00 and prior contain a heap buffer overflow vulnerability caused by an under-allocation in the NTFS compressed stream buffer (GetCuSize shift UB), potentially...
2 affected packages
7zip, p7zip
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| 7zip | Needs evaluation | Needs evaluation | Needs evaluation | — | — |
| p7zip | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
7-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain a heap memory disclosure via SquashFS fragment offset integer overflow on 32-bit builds. 32-bit integer overflow in the SquashFS ReadBlock...
2 affected packages
7zip, p7zip
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| 7zip | Needs evaluation | Needs evaluation | Needs evaluation | — | — |
| p7zip | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |