| Release | Version |
|---|---|
| bookworm | 22.01+dfsg-8+deb12u1 |
| trixie | 24.09+dfsg-8 |
| forky | 25.01+dfsg-4 |
| sid | 25.01+dfsg-4 |
| Bug | bookworm | trixie | forky | sid | Description |
|---|---|---|---|---|---|
| CVE-2025-55188 | vulnerable (no DSA) | vulnerable (no DSA) | fixed | fixed | 7-Zip before 25.01 does not always properly handle symbolic links duri ... |
| CVE-2025-11002 | vulnerable (no DSA) | vulnerable (no DSA) | fixed | fixed | |
| CVE-2025-11001 | vulnerable (no DSA) | vulnerable (no DSA) | fixed | fixed | |
| CVE-2023-40481 | vulnerable (no DSA) | fixed | fixed | fixed | 7-Zip SquashFS File Parsing Out-Of-Bounds Write Remote Code Execution ... |
| CVE-2023-31102 | vulnerable (no DSA) | fixed | fixed | fixed | Ppmd7.c in 7-Zip before 23.00 allows an integer underflow and invalid ... |
| Bug | bookworm | trixie | forky | sid | Description |
|---|---|---|---|---|---|
| CVE-2025-53817 | vulnerable | vulnerable | fixed | fixed | 7-Zip is a file archiver with a high compression ratio. 7-Zip supports ... |
| CVE-2024-11612 | vulnerable | fixed | fixed | fixed | 7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vu ... |
| CVE-2022-47112 | vulnerable | vulnerable | vulnerable | vulnerable | 7-Zip 22.01 does not report an error for certain invalid xz files, inv ... |
| CVE-2022-47111 | vulnerable | vulnerable | vulnerable | vulnerable | 7-Zip 22.01 does not report an error for certain invalid xz files, inv ... |
| Bug | Description |
|---|---|
| CVE-2025-0411 | 7-Zip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows ... |
| CVE-2024-11477 | 7-Zip Zstandard Decompression Integer Underflow Remote Code Execution ... |
| CVE-2023-52169 | The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) conta ... |
| CVE-2023-52168 | The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) conta ... |