CVE-2025-15570 - ckolivas lrzip stream.c lzma_decompress_buf use after free

CVE-2025-15570 - ckolivas lrzip stream.c lzma_decompress_buf use after free

CVE ID : CVE-2025-15570 Published : Feb. 10, 2026, 2:16 p.m. | 34 minutes ago Description : A vulnerability was found in ckolivas lrzip up to 0.651. This impacts the function lzma_decompress_buf of the file stream.c. Performing a manipulation results in use after free. Attacking locally is a requirement. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Feb. 10, 2026