I have read about some buffer overflow vulnerability when unpacking a rar file.
Just have a look here:
http://labs.idefense.com/intelligence/v ... php?id=472
Is there the same problem with the RAR-Plugin in Salamander?
Unrar Password Prompt Buffer Overflow Vulnerability
-
- ALTAP Staff
- Posts: 5231
- Joined: 08 Dec 2005, 06:34
- Location: Novy Bor, Czech Republic
- Contact:
Unrar Password Prompt Buffer Overflow Vulnerability
We don't know. There is nearly zero information in the mentioned message.
Without detailed description and sample archive we are not able to tell you...
Without detailed description and sample archive we are not able to tell you...
Unrar Password Prompt Buffer Overflow Vulnerability
WinRAR's changelog:
Version 3.70 beta 1
15. Stack overflow vulnerability has been corrected in password
processing module of console RAR and UnRAR. GUI WinRAR is not
affected. We are thankful to the iDEFENSE LABS for reporting this bug.
-
- ALTAP Staff
- Posts: 5231
- Joined: 08 Dec 2005, 06:34
- Location: Novy Bor, Czech Republic
- Contact:
Unrar Password Prompt Buffer Overflow Vulnerability
V tom případě bude stačit nahradit knihovnu
Servant Salamander 2.5 RC2\plugins\unrar\unrar.dll
novou opravenou verzí z UnRAR 3.70 beta 1...
Servant Salamander 2.5 RC2\plugins\unrar\unrar.dll
novou opravenou verzí z UnRAR 3.70 beta 1...