https://seclists.org/oss-sec/2025/q3/87: CVE-2025-55188: 7-Zip: Arbitrary file write on extraction, may lead to code execution
Published Aug 10, 2025
·Updated
Affected Software
1 affected component
7-Zip 7-Zip
Frequently Asked Questions
1
What is the severity of CVE-2025-55188?
CVE-2025-55188 has a high severity rating due to its potential to allow arbitrary file writes that may lead to code execution.
2
How do I fix CVE-2025-55188?
To fix CVE-2025-55188, update to the latest version of 7-Zip that addresses this vulnerability.
3
What impact does CVE-2025-55188 have on systems using 7-Zip?
CVE-2025-55188 can compromise system security by allowing unauthorized files to be written during extraction.
4
What versions of 7-Zip are affected by CVE-2025-55188?
CVE-2025-55188 affects version 25.00 of 7-Zip and possibly earlier versions.
5
Is CVE-2025-55188 being actively exploited?
As of now, there are no confirmed reports of active exploitation for CVE-2025-55188, but the risk is significant.