7-Zip: Multiple Memory Corruptions via RAR and ZIP

In my previous posts about the two Bitdefender bugs related to 7z, I explicitly mentioned that Igor Pavlov’s 7-Zip reference implementation was not affected. Unfortunately, I cannot do the same for the bugs described in this blog post.
I found these bugs during the analysis of a prominent antivirus product. As the vendor has not yet published a patch I will add the name of the affected product in an update to this post as soon as this happens.

Article Link: https://landave.io/2018/01/7-zip-multiple-memory-corruptions-via-rar-and-zip/