logo

CVE-2026-48095: 7-Zip Heap Buffer Overflow Can Lead to Code Execution

ID: 0b39ddfd-a199-58f7-b821-ec52b911d4a9

STIX ID: report--0b39ddfd-a199-58f7-b821-ec52b911d4a9

Feed Name: SOC Prime Blog

Threat Score
75/100

Date Published: 2026-05-26

Date Updated: 2026-05-27

Author: SOC Prime Team

...
...

CVE-2026-48095 is a heap buffer overflow in 7-Zip’s NTFS archive handler (affecting at least 7-Zip 26.00) where an under-allocation in buffer sizing allows an attacker-supplied NTFS image to overwrite heap memory and hijack a vtable, enabling potential arbitrary code execution; a public Python PoC (gen_ntfs_sparse.py) was released and the issue is fixed in 7-Zip 26.01 (released April 27, 2026), so immediate patching and cautious handling of untrusted archives are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.