<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 20:29:09 +0000</lastBuildDate>
    <item>
      <title>certfr-2018-avi-350 — De multiples vulnérabilités ont été découvertes dans Oracle Sun Systems.
Certaines d'entre elles permettent à un attaqu…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2018-avi-350</link>
      <description>certfr-2018-avi-350</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2018-avi-350</guid>
    </item>
    <item>
      <title>cnvd-2018-04618</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-04618</link>
      <description>cnvd-2018-04618</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-04618</guid>
    </item>
    <item>
      <title>EUVD-2026-210096</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-210096</link>
      <description>EUVD-2026-210096</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-210096</guid>
    </item>
    <item>
      <title>fkie_cve-2017-17969</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-17969</link>
      <description>&lt;p&gt;Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to cause a denial of service (out-of-bounds write) or potentially execute arbitrary code via a crafted ZIP archive.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to cause a denial of service (out-of-bounds write) or potentially execute arbitrary code via a crafted ZIP archive.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-17969</guid>
    </item>
    <item>
      <title>GHSA-5mfm-p22h-8c37</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5mfm-p22h-8c37</link>
      <description>&lt;p&gt;Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to cause a denial of service (out-of-bounds write) or potentially execute arbitrary code via a crafted ZIP archive.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to cause a denial of service (out-of-bounds write) or potentially execute arbitrary code via a crafted ZIP archive.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5mfm-p22h-8c37</guid>
    </item>
    <item>
      <title>gsd-2017-17969</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-17969</link>
      <description>gsd-2017-17969</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-17969</guid>
    </item>
    <item>
      <title>msrc_CVE-2017-17969 — Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2017-17969</link>
      <description>msrc_CVE-2017-17969</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2017-17969</guid>
    </item>
    <item>
      <title>OESA-2021-1294 — p7zip security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1294</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP2: p7zip&lt;/p&gt;
&lt;p&gt;7za for Linux system to archive file as 7z file format&#13;
&#13;
Security Fix(es):&#13;
&#13;
Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to cause a denial of service (out-of-bounds write) or potentially execute arbitrary code via a crafted ZIP archive.(CVE-2017-17969)&#13;
&#13;
Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18.00 and p7zip can lead to multiple memory corruptions within the PPMd code, allows remote attackers to cause a denial of service (segmentation fault) or execute arbitrary code via a crafted RAR archive.(CVE-2018-5996)&#13;
&#13;
Incorrect initialization logic of RAR decoder objects in 7-Zip 18.03 and before can lead to usage of uninitialized memory, allowing remote attackers to cause a denial of service (segmentation fault) or execute arbitrary code via a crafted RAR archive.(CVE-2018-10115)&#13;
&#13;
A null pointer dereference bug affects the 16.02 and many old versions of p7zip. A lack of null pointer check for the variable folders.PackPositions in function CInArchive::ReadAndDecodePackedStreams in CPP/7zip/Archive/7z/7zIn.cpp, as used in the 7z.so library and in 7z applications, will cause a crash and a denial of service when decoding malformed 7z files.(CVE-2016-9296)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP2: p7zip&lt;/p&gt;
&lt;p&gt;7za for Linux system to archive file as 7z file format&#13;
&#13;
Security Fix(es):&#13;
&#13;
Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to cause a denial of service (out-of-bounds write) or potentially execute arbitrary code via a crafted ZIP archive.(CVE-2017-17969)&#13;
&#13;
Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18.00 and p7zip can lead to multiple memory corruptions within the PPMd code, allows remote attackers to cause a denial of service (segmentation fault) or execute arbitrary code via a crafted RAR archive.(CVE-2018-5996)&#13;
&#13;
Incorrect initialization logic of RAR decoder objects in 7-Zip 18.03 and before can lead to usage of uninitialized memory, allowing remote attackers to cause a denial of service (segmentation fault) or execute arbitrary code via a crafted RAR archive.(CVE-2018-10115)&#13;
&#13;
A null pointer dereference bug affects the 16.02 and many old versions of p7zip. A lack of null pointer check for the variable folders.PackPositions in function CInArchive::ReadAndDecodePackedStreams in CPP/7zip/Archive/7z/7zIn.cpp, as used in the 7z.so library and in 7z applications, will cause a crash and a denial of service when decoding malformed 7z files.(CVE-2016-9296)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1294</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:11137-1 — p7zip-16.02-11.3 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:11137-1</link>
      <description>&lt;p&gt;p7zip-16.02-11.3 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;p7zip-16.02-11.3 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:11137-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2018:0464-1 — Security update for p7zip</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2018:0464-1</link>
      <description>&lt;p&gt;Security update for p7zip&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for p7zip&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2018:0464-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2017-17969</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-17969</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: p7zip, Ubuntu:16.04:LTS: p7zip&lt;/p&gt;
&lt;p&gt;Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to cause a denial of service (out-of-bounds write) or potentially execute arbitrary code via a crafted ZIP archive.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: p7zip, Ubuntu:16.04:LTS: p7zip&lt;/p&gt;
&lt;p&gt;Heap-based buffer overflow in the NCompress::NShrink::CDecoder::CodeReal method in 7-Zip before 18.00 and p7zip allows remote attackers to cause a denial of service (out-of-bounds write) or potentially execute arbitrary code via a crafted ZIP archive.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-17969</guid>
    </item>
  </channel>
</rss>
