CVE-2018-20253

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
13/02/2019
Last modified:
09/10/2019

Description

In WinRAR versions prior to and including 5.60, There is an out-of-bounds write vulnerability during parsing of a crafted LHA / LZH archive formats. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rarlab:winrar:*:*:*:*:*:*:*:* 5.60 (including)