Search CVE reports


Toggle filters

11 – 14 of 14 results


CVE-2017-12938

Medium priority
Vulnerable

UnRAR before 5.5.7 allows remote attackers to bypass a directory-traversal protection mechanism via vectors involving a symlink to the . directory, a symlink to the .. directory, and a regular file.

1 affected package

unrar-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unrar-nonfree Not affected Not affected Not affected Not affected
Show less packages

CVE-2012-6706

Medium priority

Some fixes available 7 of 10

A VMSF_DELTA memory corruption was discovered in unrar before 5.5.5, as used in Sophos Anti-Virus Threat Detection Engine before 3.37.2 and other products, that can lead to arbitrary code execution. An integer overflow can be...

2 affected packages

libclamunrar, unrar-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libclamunrar Fixed
unrar-nonfree Not affected
Show less packages

CVE-2007-3726

Medium priority

Some fixes available 5 of 8

Integer signedness error in the SET_VALUE function in rarvm.cpp in unrar 3.70 beta 3, as used in products including WinRAR and RAR for OS X, allows user-assisted remote attackers to cause a denial of service (crash) via a crafted...

1 affected package

unrar-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unrar-nonfree
Show less packages

CVE-2007-0855

Medium priority

Some fixes available 6 of 8

Stack-based buffer overflow in RARLabs Unrar, as packaged in WinRAR and possibly other products, allows user-assisted remote attackers to execute arbitrary code via a crafted, password-protected archive.

1 affected package

unrar-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unrar-nonfree
Show less packages