7-Zip Null Pointer Array Write - Vulnerability

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
December 25, 2025
Last Seen
December 25, 2025

7-Zip Null Pointer Array Write is a vulnerability tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed December 25, 2025; most recent activity December 25, 2025.

Overview

7-Zip Null Pointer Array Write is a vulnerability class where a null pointer is dereferenced during an array write within 7-Zip's code, leading to memory corruption that could cause a crash or allow arbitrary code execution when processing crafted archives. Its significance lies in the ubiquity of 7-Zip as a cross-platform decompression tool, making affected deployments widespread and high-value targets for exploitation of untrusted archive data.

Related Threat Clusters

Recent Intelligence Reports

  • Fedora 43: retroarch Critical Buffer Overflow Issue FEDORA-2025 — Linuxsecurity · December 25, 2025

CVSS v3.1 Breakdown