Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

RARLAB WinRAR LHA Filename Handling Buffer Overflow Vulnerability

WinRAR is susceptible to a remote buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.

This vulnerability allows attackers to execute arbitrary machine code in the context of the affected application.

Versions of WinRAR from 3.0 to 3.60 beta 6 are vulnerable to this issue.







 

Privacy Statement
Copyright 2009, SecurityFocus