7-Zip RCE Vulnerability Let Attackers Execute Remote Code (gbhackers.com)
from kid@sh.itjust.works to cybersecurity@sh.itjust.works on 26 Nov 2024 11:33
https://sh.itjust.works/post/28643156

#cybersecurity

threaded - newest

vithigar@lemmy.ca on 26 Nov 2024 12:30 collapse

For anyone concerned, this was fixed in 7-zip version 24.07, which was released back in June.

WagnasT@lemmy.world on 26 Nov 2024 13:24 collapse

Also it looks like it requires the user to interact with a specially crafted archive file and can access memory within context of the user.