Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to cause a denial of service (out-of-bounds write) or potentially execute arbitrary code via a crafted ZIP archive.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
7-Zip和p7zip 缓冲区错误漏洞
Vulnerability Description
7-Zip一套免费的、开源的压缩/解压缩软件。p7zip是它的基于Linux平台的版本。 7-Zip 18.00之前版本和p7zip中的NCompress::NShrink::CDecoder::CodeReal方法存在基于堆的缓冲区溢出漏洞。远程攻击者可借助特制的ZIP归档文件利用该漏洞造成拒绝服务或可能执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A