PT-2025-29941 · Igor Pavlov+4 · 7-Zip+4
Jarlob
+1
·
Published
2025-04-24
·
Updated
2026-02-26
·
CVE-2025-53817
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
7-Zip versions prior to 25.0.0
Description
7-Zip is a file archiver that supports extracting from Compound Documents. A null pointer dereference in the Compound handler may lead to denial of service.
Recommendations
Update to version 25.0.0 or later.
Exploit
Fix
DoS
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
7-Zip
Astra Linux
Debian
Red Os
Suse