VDB

GCVE-VVD-MAGEIA-2021-305

GCVE-VVD-MAGEIA-2021-305
Advisory Published
Vulnetix · Advisory published June 30, 2021
In p7zip-17.03, the function NCompress::CCopyCoder::Code in CPP/7zip/Common/StreamObjects.cpp will call outStream->Write where a memcpy uses a NULL pointer as destination address, leading to a crash (CVE-2021-3465). Null pointer dereference in function Reserve() found in p7zip 16.02 (rhbz#1951218). Null Pointer Dereference in function NArchive::NLzh::CItem::GetUnixTime found in p7zip 16.02 (rhbz#1951224). The p7zip package has been patched to fix these issues. Also, the Mageia 7 package has been updated to version 17.03.

Affected Products

VendorProductVersionsPlatforms
Mageiap7zip0 (affected), 17.03-1.1.mga8 (unaffected)
Mageiap7zip0 (affected), 17.03-1.1.mga7 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›