A vulnerability was found in ulikunitz xz up to 0.5.13 and classified as problematic. The affected element is an unknown function of the component LZMA-encoded Byte Stream Handler. The manipulation results in allocation of resources.

This vulnerability is reported as CVE-2025-58058. The attack can be launched remotely. No exploit exists.

It is suggested to upgrade the affected component.