CVE-2018-25018

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
01/07/2021
Last modified:
07/07/2021

Description

UnRAR 5.6.1.7 through 5.7.4 and 6.0.3 has an out-of-bounds write during a memcpy in QuickOpen::ReadRaw when called from QuickOpen::ReadNext.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rarlab:unrar:*:*:*:*:*:*:*:* 5.6.1.7 (including) 5.7.4 (including)
cpe:2.3:a:rarlab:unrar:6.0.3:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*