CVE-2025-53817

Published: 07/17/2025 19:15:25
7-Zip is a file archiver with a high compression ratio. 7-Zip supports extracting from Compound Documents. Prior to version 25.0.0, a null pointer dereference in the Compound handler may lead to denial of service. Version 25.0.0 contains a fix cor the issue.
HIGH
CVSS v3: 7.5

Status

DocFilters Release Package State Justification Comment
0.0.0.1 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
25.3 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
25.2 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
25.1.1 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
25.1 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
24.4 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
24.4.0 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
24.3 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
24.2.1 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
24.2 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
24.1 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
23.3 7-zip (23.01) Not Affected Code Not Present Document Filters does not compile the affected code.
23.2.1 7-zip (17.01) Not Affected Code Not Present Document Filters does not compile the affected code.
23.2 7-zip (17.01) Not Affected Code Not Present Document Filters does not compile the affected code.
23.1 7-zip (17.01) Not Affected Code Not Present Document Filters does not compile the affected code.
22.4 7-zip (17.01) Not Affected Code Not Present Document Filters does not compile the affected code.

Severity score breakdown

Attack Complexity
LOW
Attack Vector
NETWORK
Availability Impact
HIGH
Base Score
7.5
Base Severity
HIGH
Confidentiality Impact
NONE
Integrity Impact
NONE
Privileges Required
NONE
Scope
UNCHANGED
User Interaction
NONE
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Version
3.1

References