Menu

#660 Vulnerability of the 7-Zip file archiver

open
nobody
None
9
2 days ago
4 days ago
Petr
No

Vulnerability of the 7-Zip file archiver (BDU:2025-12912, CVSS 3.1 hazard level is high) related to incorrect identification of symbolic links before accessing the file. The exploitation of this vulnerability may allow an intruder to execute arbitrary code, provided that the user opens a specially generated ZIP archive. When is an update planned to close this hole?

Discussion

  • Petr

    Petr - 2 days ago

    Thank you. Haven't looked at the ChangeLog

     

Log in to post a comment.