https://seclists.org/oss-sec/2025/q4/55: CVE-2025-55188: 7-Zip: Arbitrary file write on extraction, may lead to code execution
Published Oct 16, 2025
·Updated
Affected Software
1 affected component
7-Zip 7-Zip
Frequently Asked Questions
1
What is the severity of CVE-2025-55188?
CVE-2025-55188 has a high severity rating as it allows arbitrary file write on extraction, potentially leading to code execution.
2
How do I fix CVE-2025-55188?
To fix CVE-2025-55188, update to the latest version of 7-Zip that includes the security patches addressing this vulnerability.
3
What software is affected by CVE-2025-55188?
CVE-2025-55188 specifically affects 7-Zip in its version that allows for arbitrary file write during extraction.
4
Can CVE-2025-55188 lead to remote code execution?
Yes, CVE-2025-55188 can lead to remote code execution by allowing attackers to write arbitrary files during the extraction process.
5
When was CVE-2025-55188 published?
CVE-2025-55188 was published on October 16, 2025.