We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-53816

GHSL-2025-058 - 7-Zip Multi-byte write heap buffer overflow in NCompress::NRar5::CDecoder



Description

7-Zip is a file archiver with a high compression ratio. Zeroes written outside heap buffer in RAR5 handler may lead to memory corruption and denial of service in versions of 7-Zip prior to 25.0.0. Version 25.0.0 contains a fix for the issue.

Reserved 2025-07-09 | Published 2025-07-17 | Updated 2025-07-17 | Assigner GitHub_M


MEDIUM: 5.5CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:P

Problem types

CWE-122: Heap-based Buffer Overflow

Product status

< 25.0.0
affected

References

securitylab.github.com/advisories/GHSL-2025-058_7-Zip/

cve.org (CVE-2025-53816)

nvd.nist.gov (CVE-2025-53816)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-53816

Support options

Helpdesk Chat, Email, Knowledgebase