Description
The Repair Archive command in WinRAR 3.40 allows remote attackers to cause a denial of service (application crash) via a corrupt ZIP archive.
Affected products
- RARLAB / WinRAR2.90 – 2.90
- RARLAB / WinRAR3.0.0 – 3.0.0
- RARLAB / WinRAR3.10 – 3.10
- RARLAB / WinRAR3.10_beta3 – 3.10_beta3
- RARLAB / WinRAR3.10_beta5 – 3.10_beta5
- RARLAB / WinRAR3.11 – 3.11
- RARLAB / WinRAR3.20 – 3.20
- RARLAB / WinRAR3.40 – 3.40