6.8
CVSSv2

CVE-2007-0855

Published: 08/02/2007 Updated: 29/07/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in RARLabs Unrar, as packaged in WinRAR and possibly other products, allows user-assisted remote malicious users to execute arbitrary code via a crafted, password-protected archive.

Vulnerable Product Search on Vulmon Subscribe to Product

rarlab unrar 3.60

rarlab unrar 3.61

Vendor Advisories

Debian Bug report logs - #410580 CVE-2007-0855: Stack-based buffer overflow in Unrar Package: unrar; Maintainer for unrar is Martin Meredith <mez@debianorg>; Source for unrar is src:unrar-nonfree (PTS, buildd, popcon) Reported by: Stefan Fritsch <sf@sfritschde> Date: Sun, 11 Feb 2007 21:18:08 UTC Severity: grave T ...