Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 501
Alerts This Week
Warning Icon 1 501

Gentoo: GLSA-200511-10 Normal: RAR Format String and Buffer Overflow

gentoo
Calendar Grey November 13, 2005
Scroller Gentoo
ZIP compression vulnerabilities and memory corruption issues permit unauthorized code execution in Fedora. Immediate patching advised.
RAR contains a format string error and a buffer overflow vulnerability that may be used to execute arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200511-10 https://security.gentoo.org/ Severity: Normal Title: RAR: Format string and buffer overflow vulnerabilities Date: November 13, 2005 Bugs: #111926 ID: 200511-10

Synopsis ======= RAR contains a format string error and a buffer overflow vulnerability that may be used to execute arbitrary code.
Background ========= RAR is a powerful archive manager that can decompress RAR, ZIP and other files, and can create new archives in RAR and ZIP file format.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-arch/rar < 3.5.1 >= 3.5.1
========== Tan Chew Keong reported about two vulnerabilities found in RAR:
* A forma...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround