Search CVE reports


Toggle filters

11 – 20 of 23 results


CVE-2023-1576

Medium priority
Ignored

Rejected reason: This is a duplicate of an earlier CVE, CVE-2022-47069.

1 affected package

p7zip

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
p7zip Not affected Not affected Not affected
Show less packages

CVE-2022-47112

Medium priority
Needs evaluation

7-Zip 22.01 does not report an error for certain invalid xz files, involving stream flags and reserved bits. Some later versions are unaffected.

2 affected packages

7zip, p7zip

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
7zip Needs evaluation Needs evaluation Not in release
p7zip Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-47111

Medium priority
Needs evaluation

7-Zip 22.01 does not report an error for certain invalid xz files, involving block flags and reserved bits. Some later versions are unaffected.

2 affected packages

7zip, p7zip

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
7zip Needs evaluation Needs evaluation Not in release
p7zip Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-47069

Medium priority
Needs evaluation

p7zip 16.02 was discovered to contain a heap-buffer-overflow vulnerability via the function NArchive::NZip::CInArchive::FindCd(bool) at CPP/7zip/Archive/Zip/ZipIn.cpp.

1 affected package

p7zip

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
p7zip Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2021-3465

Medium priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

1 affected package

p7zip

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
p7zip Ignored Ignored
Show less packages

CVE-2018-5996

Medium priority
Vulnerable

Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18.00 and p7zip can lead to multiple memory corruptions within the PPMd code, allows remote attackers to cause a denial of service...

1 affected package

p7zip-rar

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
p7zip-rar Not affected Not affected Not affected Not affected
Show less packages

CVE-2018-10115

Medium priority
Needs evaluation

Incorrect initialization logic of RAR decoder objects in 7-Zip 18.03 and before can lead to usage of uninitialized memory, allowing remote attackers to cause a denial of service (segmentation fault) or execute arbitrary code via a...

1 affected package

p7zip-rar

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
p7zip-rar Not affected Not affected Not affected Needs evaluation
Show less packages

CVE-2017-17969

Medium priority

Some fixes available 2 of 3

Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to cause a denial of service (out-of-bounds write) or potentially execute arbitrary code via a...

1 affected package

p7zip

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
p7zip Not affected
Show less packages

CVE-2016-9296

Low priority
Ignored

A null pointer dereference bug affects the 16.02 and many old versions of p7zip. A lack of null pointer check for the variable folders.PackPositions in function CInArchive::ReadAndDecodePackedStreams...

1 affected package

p7zip

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
p7zip Not affected
Show less packages

CVE-2016-2335

Medium priority

Some fixes available 3 of 4

The CInArchive::ReadFileItem method in Archive/Udf/UdfIn.cpp in 7zip 9.20 and 15.05 beta and p7zip allows remote attackers to cause a denial of service (out-of-bounds read) or execute arbitrary code via the PartitionRef field in...

1 affected package

p7zip

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
p7zip Not affected
Show less packages