https://reddit.com/r/netsec/comments/1khsld0/cve202411477_7zip_zstd_buffer_overflow/: CVE-2024-11477- 7-Zip ZSTD Buffer Overflow Vulnerability - Crowdfense
Published May 8, 2025
·Updated
Affected Software
1 affected component
Crowdfense 7-Zip
Frequently Asked Questions
1
What is the severity of CVE-2024-11477?
CVE-2024-11477 is rated as high severity due to its potential to allow remote code execution via a buffer overflow.
2
How do I fix CVE-2024-11477?
To fix CVE-2024-11477, update 7-Zip to the latest version provided by Crowdfense that addresses this vulnerability.
3
What type of vulnerability is CVE-2024-11477?
CVE-2024-11477 is a buffer overflow vulnerability specifically affecting the ZSTD compression used in 7-Zip.
4
Who is affected by CVE-2024-11477?
Users of Crowdfense 7-Zip who handle ZSTD compressed files are affected by CVE-2024-11477.
5
What are the potential impacts of CVE-2024-11477?
The potential impacts of CVE-2024-11477 include unauthorized access to system resources and compromise of data integrity through remote code execution.