Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-31102


Ppmd7.c in 7-Zip before 23.00 allows an integer underflow and invalid read operation via a crafted 7Z archive.


Published

2023-11-03T04:15:20.793

Last Modified

2024-11-21T08:01:25.310

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-191
  • Type: Secondary
    CWE-191

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application 7-zip 7-zip < 22.01 Yes
Operating System linux linux_kernel - No
Application netapp active_iq_unified_manager - Yes
Application netapp oncommand_workflow_automation - Yes

References