CVE-2023-52168

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-52168
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-52168.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-52168
Downstream
Related
Published
2024-07-03T18:15:04Z
Modified
2025-09-22T04:01:09Z
Summary
[none]
Details

The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) contains a heap-based buffer overflow that allows an attacker to overwrite two bytes at multiple offsets beyond the allocated buffer size: buffer+512*i-2, for i=9, i=10, i=11, etc.

References

Affected packages