CVE Vulnerabilities

CVE-2006-3845

Published: Jul 25, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Stack-based buffer overflow in lzh.fmt in WinRAR 3.00 through 3.60 beta 6 allows remote attackers to execute arbitrary code via a long filename in a LHA archive.

Affected Software

Name Vendor Start Version End Version
Winrar Rarlab 3.50 3.50
Winrar Rarlab 3.0.0 3.0.0
Winrar Rarlab 3.10 3.10
Winrar Rarlab 3.51 3.51
Winrar Rarlab 3.60_beta3 3.60_beta3
Winrar Rarlab 3.41 3.41
Winrar Rarlab 3.20 3.20
Winrar Rarlab 3.42 3.42
Winrar Rarlab 3.60_beta2 3.60_beta2
Winrar Rarlab 3.30 3.30
Winrar Rarlab 3.60_beta5 3.60_beta5
Winrar Rarlab 3.40 3.40
Winrar Rarlab 3.10_beta3 3.10_beta3
Winrar Rarlab 3.60_beta6 3.60_beta6
Winrar Rarlab 3.60_beta4 3.60_beta4
Winrar Rarlab 3.10_beta5 3.10_beta5
Winrar Rarlab 3.60_beta1 3.60_beta1
Winrar Rarlab 3.11 3.11

References