CVE Explorer
CVE-2026-55783
NanaZip is the 7-Zip derivative intended for the modern Windows experience. Prior to 6.5.1749.0, NanaZip's seven in-house IInArchive handlers in NanaZip.Codecs unconditionally dereference the caller-supplied Indices array inside Extract when the archive engine signals extract everything by passing Indices as NULL and NumItems as 0xFFFFFFFF. This causes a NULL pointer dereference in the standard Test archive or Extract all code path for WebAssembly, ElectronAsar, Zealfs, Romfs, Ufs, Littlefs, and
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"product":"NanaZip","vendor":"M2Team","versions":[{"status":"affected","version":"< 6.5.1749.0"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:d2a0f34dc36a954e6ecc2d3a190d2f90997a2fb074ac4995218491ee02a99875 · sha256:47fde299ffaa785f… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"attackComplexity":"LOW","attackRequirements":"NONE","attackVector":"LOCAL","baseScore":2.4,"baseSeverity":"LOW","privilegesRequired":"LOW","subAvailabilityImpact":"NONE","subConfidentialityImpact":"NONE","subIntegrityImpact":"NONE","userInteraction":"PASSIVE","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N","version":"4.0","vulnAvailabilityImpact":"LOW","vulnConfidentialityImpact":"NONE","vulnIntegrityImpact":"NONE"},"metric_type":"cvssV4_0"}
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:d2a0f34dc36a954e6ecc2d3a190d2f90997a2fb074ac4995218491ee02a99875 · sha256:47fde299ffaa785f… · /containers/cna/metrics/0/cvssV4_0
CWE assertions
1 source assertion{"cweId":"CWE-476","description":"CWE-476: NULL Pointer Dereference","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:d2a0f34dc36a954e6ecc2d3a190d2f90997a2fb074ac4995218491ee02a99875 · sha256:47fde299ffaa785f… · /containers/cna/problemTypes/0/descriptions/0
Source references
4 source assertions{"name":"https://github.com/M2Team/NanaZip/commit/5d74d90b737ac7096e5d944a5a3070c5c6a8f894","tags":["x_refsource_MISC"],"url":"https://github.com/M2Team/NanaZip/commit/5d74d90b737ac7096e5d944a5a3070c5c6a8f894"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d2a0f34dc36a954e6ecc2d3a190d2f90997a2fb074ac4995218491ee02a99875 · sha256:47fde299ffaa785f… · /containers/cna/references/1
{"name":"https://github.com/M2Team/NanaZip/releases/tag/6.5.1749.0","tags":["x_refsource_MISC"],"url":"https://github.com/M2Team/NanaZip/releases/tag/6.5.1749.0"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d2a0f34dc36a954e6ecc2d3a190d2f90997a2fb074ac4995218491ee02a99875 · sha256:47fde299ffaa785f… · /containers/cna/references/2
{"tags":["exploit"],"url":"https://github.com/M2Team/NanaZip/security/advisories/GHSA-q67r-9cfh-xc29"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d2a0f34dc36a954e6ecc2d3a190d2f90997a2fb074ac4995218491ee02a99875 · sha256:47fde299ffaa785f… · /containers/adp/0/references/0
{"name":"https://github.com/M2Team/NanaZip/security/advisories/GHSA-q67r-9cfh-xc29","tags":["x_refsource_CONFIRM"],"url":"https://github.com/M2Team/NanaZip/security/advisories/GHSA-q67r-9cfh-xc29"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:d2a0f34dc36a954e6ecc2d3a190d2f90997a2fb074ac4995218491ee02a99875 · sha256:47fde299ffaa785f… · /containers/cna/references/0
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.