Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-4576-1 | p7zip security update |
EUVD |
EUVD-2025-21790 | 7-Zip is a file archiver with a high compression ratio. 7-Zip supports extracting from Compound Documents. Prior to version 25.0.0, a null pointer dereference in the Compound handler may lead to denial of service. Version 25.0.0 contains a fix cor the issue. |
Tue, 04 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Thu, 21 Aug 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
7-zip
7-zip 7-zip |
|
| CPEs | cpe:2.3:a:7-zip:7-zip:*:*:*:*:*:*:*:* | |
| Vendors & Products |
7-zip
7-zip 7-zip |
|
| Metrics |
cvssV3_1
|
Fri, 18 Jul 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 18 Jul 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Thu, 17 Jul 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | 7-Zip is a file archiver with a high compression ratio. 7-Zip supports extracting from Compound Documents. Prior to version 25.0.0, a null pointer dereference in the Compound handler may lead to denial of service. Version 25.0.0 contains a fix cor the issue. | |
| Title | GHSL-2025-059 - 7-Zip - Null pointer array write attempt in NArchive::NCom::CHandler::GetStream | |
| Weaknesses | CWE-476 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-11-04T21:12:38.546Z
Reserved: 2025-07-09T14:14:52.529Z
Link: CVE-2025-53817
Updated: 2025-11-04T21:12:38.546Z
Status : Modified
Published: 2025-07-17T19:15:25.327
Modified: 2025-11-04T22:16:26.893
Link: CVE-2025-53817
No data.
OpenCVE Enrichment
No data.
Debian DLA
EUVD