CVE-2006-3845

Rarlab Winrar - Buffer Overflow

Title source: rule

Description

Stack-based buffer overflow in lzh.fmt in WinRAR 3.00 through 3.60 beta 6 allows remote attackers to execute arbitrary code via a long filename in a LHA archive.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Ryan Smith · cremotewindows
https://www.exploit-db.com/exploits/28235

Scores

EPSS 0.0558
EPSS Percentile 90.3%

Details

Status published
Products (18)
rarlab/winrar 3.0.0
rarlab/winrar 3.10
rarlab/winrar 3.10_beta3
rarlab/winrar 3.10_beta5
rarlab/winrar 3.11
rarlab/winrar 3.20
rarlab/winrar 3.30
rarlab/winrar 3.40
rarlab/winrar 3.41
rarlab/winrar 3.42
... and 8 more
Published Jul 25, 2006
Tracked Since Feb 18, 2026