Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-47112

Опубликовано: 19 апр. 2025
Источник: ubuntu
Приоритет: medium
CVSS3: 2.5

Описание

7-Zip 22.01 does not report an error for certain invalid xz files, involving stream flags and reserved bits. Some later versions are unaffected.

РелизСтатусПримечание
devel

needs-triage

esm-apps/jammy

needs-triage

esm-apps/noble

needs-triage

esm-infra/focal

DNE

focal

DNE

jammy

needs-triage

noble

needs-triage

oracular

ignored

end of life, was needs-triage
plucky

ignored

end of life, was needs-triage
questing

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

needs-triage

esm-apps/focal

needs-triage

esm-apps/jammy

needs-triage

esm-apps/noble

not-affected

esm-apps/xenial

needs-triage

esm-infra-legacy/trusty

needs-triage

focal

ignored

end of standard support, was needs-triage
jammy

needs-triage

noble

not-affected

16.02+transitional.1

Показывать по

2.5 Low

CVSS3

Связанные уязвимости

CVSS3: 2.5
nvd
10 месяцев назад

7-Zip 22.01 does not report an error for certain invalid xz files, involving stream flags and reserved bits. Some later versions are unaffected.

CVSS3: 2.5
debian
10 месяцев назад

7-Zip 22.01 does not report an error for certain invalid xz files, inv ...

CVSS3: 2.5
github
10 месяцев назад

7-Zip through 24.09 does not report an error for certain invalid xz files, involving stream flags and reserved bits.

CVSS3: 2.5
fstec
10 месяцев назад

Уязвимость архиватора 7-Zip, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю оказать воздействие на целостность защищаемой информации

2.5 Low

CVSS3