Monday, 21 July

Monday, 21 July2025

7‑Zip Flaw in RAR5 Decoder Lets Hackers Crash Systems via Denial‑of‑Service

7‑Zip Flaw in RAR5 Decoder Lets Hackers Crash Systems via Denial‑of‑Service
A critical medium-severity vulnerability (CVE-2025-53816) in 7Zip's RAR5 decoder triggers a heap-based buffer overflow that can be exploited using malicious RAR5 files. Attackers can force denial-of-service crashesthough not remote code executionby overflowing internal memory, disrupting systems processing untrusted archives. The bug was patched in version25.00 (released July5, 2025). Users should immediately upgrade and sanitize archive handling policies.

Subscribe To Our Newsletter.

Full Name
Email