https://seclists.org/oss-sec/2025/q3/90: CVE-2025-55188: 7-Zip: Arbitrary file write on extraction, may lead to code execution
Published Aug 11, 2025
·Updated
Affected Software
1 affected component
7-Zip 7-Zip
Frequently Asked Questions
1
What is the severity of CVE-2025-55188?
CVE-2025-55188 is rated as a critical vulnerability due to the potential for arbitrary file writes that may lead to code execution.
2
How do I fix CVE-2025-55188?
To fix CVE-2025-55188, update 7-Zip to the latest version that addresses this vulnerability.
3
What are the potential impacts of CVE-2025-55188?
The potential impacts of CVE-2025-55188 include unauthorized file manipulation and possible remote code execution.
4
Which software is affected by CVE-2025-55188?
CVE-2025-55188 affects the extraction functionality of 7-Zip versions prior to the patched release.
5
Can CVE-2025-55188 be exploited remotely?
Yes, CVE-2025-55188 can be exploited remotely if a user extracts a malicious archive.