Thursday, 5 March

Thursday, 5 March2026

7‑Zip Flaw in RAR5 Decoder Lets Hackers Crash Systems via Denial‑of‑Service

By Isha
7‑Zip Flaw in RAR5 Decoder Lets Hackers Crash Systems via Denial‑of‑Service
A critical medium-severity vulnerability (CVE-2025-53816) in 7‑Zip's RAR5 decoder triggers a heap-based buffer overflow that can be exploited using malicious RAR5 files. Attackers can force denial-of-service crashes—though not remote code execution—by overflowing internal memory, disrupting systems processing untrusted archives. The bug was patched in version 25.00 (released July 5, 2025). Users should immediately upgrade and sanitize archive handling policies.

Download TechShots

IT Trends Move Fast. Stay Faster.

Share your insights

Subscribe To Our Newsletter.

Full Name
Email