CVE-2022-29072
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
6Exploited in Wild
-Decision
Descriptions
7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents area. This is caused by misconfiguration of 7z.dll and a heap overflow. The command runs in a child process under the 7zFM.exe process. NOTE: multiple third parties have reported that no privilege escalation can occur
**EN DISPUTA** 7-Zip hasta la versión 21.07 en Windows permite la escalada de privilegios y la ejecución de comandos cuando se arrastra un archivo con la extensión .7z al área de Ayuda>Contenido. Esto es causado por una mala configuración de 7z.dll y un desbordamiento de la pila. El comando se ejecuta en un proceso hijo bajo el proceso 7zFM.exe, NOTA: varios terceros han informado de que no se puede producir una escalada de privilegios
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2022-04-12 CVE Reserved
- 2022-04-15 CVE Published
- 2022-04-18 First Exploit
- 2023-12-05 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-122: Heap-based Buffer Overflow
- CWE-787: Out-of-bounds Write
CAPEC
References (8)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/166763/7-Zip-21.07-Code-Execution-Privilege-Escalation.html | Broken Link | |
https://news.ycombinator.com/item?id=31070256 | Issue Tracking |
URL | Date | SRC |
---|---|---|
https://github.com/kagancapar/CVE-2022-29072 | 2024-08-03 | |
https://github.com/tiktb8/CVE-2022-29072 | 2022-04-18 | |
https://github.com/sentinelblue/CVE-2022-29072 | 2022-04-20 | |
https://github.com/rasan2001/CVE-2022-29072 | 2024-05-10 | |
https://sourceforge.net/p/sevenzip/bugs/2337 | 2024-08-03 | |
https://www.youtube.com/watch?v=sT1cvbu7ZTA | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
7-zip Search vendor "7-zip" | 7-zip Search vendor "7-zip" for product "7-zip" | <= 21.07 Search vendor "7-zip" for product "7-zip" and version " <= 21.07" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|