Stack-based buffer overflow in lzh.fmt in WinRAR 3.00 through 3.60 beta 6 allows remote attackers to execute arbitrary code via a long filename in a LHA archive.
2006-07-25T23:04:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | rarlab | winrar | 3.0.0 | Yes |
Application | rarlab | winrar | 3.10 | Yes |
Application | rarlab | winrar | 3.10_beta3 | Yes |
Application | rarlab | winrar | 3.10_beta5 | Yes |
Application | rarlab | winrar | 3.11 | Yes |
Application | rarlab | winrar | 3.20 | Yes |
Application | rarlab | winrar | 3.30 | Yes |
Application | rarlab | winrar | 3.40 | Yes |
Application | rarlab | winrar | 3.41 | Yes |
Application | rarlab | winrar | 3.42 | Yes |
Application | rarlab | winrar | 3.50 | Yes |
Application | rarlab | winrar | 3.51 | Yes |
Application | rarlab | winrar | 3.60_beta1 | Yes |
Application | rarlab | winrar | 3.60_beta2 | Yes |
Application | rarlab | winrar | 3.60_beta3 | Yes |
Application | rarlab | winrar | 3.60_beta4 | Yes |
Application | rarlab | winrar | 3.60_beta5 | Yes |
Application | rarlab | winrar | 3.60_beta6 | Yes |