PT-2025-29940 · Igor Pavlov+2 · 7-Zip+2

Jarlob

+1

·

Published

2025-04-24

·

Updated

2026-02-26

·

CVE-2025-53816

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions 7-Zip versions prior to 25.0.0
Description 7-Zip is a file archiver with a high compression ratio. A flaw exists in the RAR5 handler where writing zeroes outside of the heap buffer can cause memory corruption and denial of service.
Recommendations Update to version 25.0.0 or later.

Exploit

Fix

DoS

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-08797
CVE-2025-53816
OPENSUSE-SU-2025:15523-1
OPENSUSE-SU-2026:20273-1
SUSE-SU-2026:20592-1

Affected Products

7-Zip
Debian
Red Os