Vulnerability in WinRAR puts users at risk of being attacked
This vulnerability, codenamed CVE-2023-40477, was discovered in June. Currently, the developer RARLAB has released a patch.
WinRAR is a file compression and decompression application popular with Windows computer users. This vulnerability appears in the processing of the "recovery volume", a step in the decompression process of this software. An attacker could trick a user into opening a specially crafted compressed file with the hacker's intent, then take advantage of a newly discovered vulnerability in WinRAR to execute arbitrary code on the victim's system.
According to experts, this is not a very serious vulnerability with a score of 7.8 because the exploitation depends on the user's actions.
However, according to Bleeping Computer, for hackers, tricking users into opening the file is not too much of a challenge. The number of WinRAR users is very large around the world, so the possibility of successful exploitation by hackers is also quite high.
Developer RARLAB has released patch 6.23 to fix this problem and also fix another critical error in file initialization that causes some special archives to have problems compressing. Users should update soon to ensure safety.
Microsoft is said to be testing a feature that allows users to compress files, supporting current popular compression formats such as RAR, 7-Zip and GZ built into Windows 11. If this feature officially added, WinRAR as well as third-party software will be used less often.
You should read it
- Link Download WinRAR 6.00b1: A free compression and decompression tool
- Why does Winrar give you a free trial for a lifetime?
- WinRAR is really free version, please download and experience
- Instructions for notes with WinRAR
- WinRAR settings automatically delete the root directory after decompressing the data
- How to Use WinRAR
- Detecting serious security flaws that exist for more than 19 years on WinRAR, can affect 500 million users
- How to Download WinRAR
May be interested
- Detects code execution vulnerabilities in WinRAR, noting more than 100 infringement casesa code execution vulnerability in winrar has been exploited more than 100 times separately by hackers in the first week since it was revealed, and it is expected that this number will continue to increase in the future.
- Instructions to collapse the WinRAR menu on the right-click menuwinrar decompression tool allows users to collapse the menu when clicking on the right mouse button, making the list of commands when clicked right and neat.
- Exploit code released puts Windows 10 20H2 and Windows Server 20H2 at riska security researcher has released a poc for a critical security vulnerability found in the latest versions of windows 10 and windows server.
- OWN A WINRAR COPYRIGHT AT AN EXTREMELY AFFORDABLE PRICEtoday hacom will guide you how to buy genuine winrar license for 'people in need', for only 80,000 vnd. latest update july 2023
- Google warns of a vulnerability that allows Android smartphones to be attacked with just a phone numbergoogle researchers have discovered and reported 18 zero-day vulnerabilities in samsung-made exynos modems found in dozens of android phones, watches, and vehicles.
- There was WinRAR final 5.61, invite download and experiencerecently, winrar version 5.61 has been officially released with many advanced features, users can download and experience.
- Instructions for notes with WinRARdo you wonder what kind of notes people have in winrar but when opening the zipped file there is a comment box next to it, but after a long time struggling to find a way that you still give up. do not worry because tipsmake.com will help you, just follow the simple steps below that you can write notes on your compressed file already.
- How to compress and decompress files with WinRar?with the advantages of fast compression and decompression speed, support for many different compression formats, simple one-click operation, winrar is the first choice of users when it is necessary to compress files in windows. to use it, first download winrar and install it on your computer.
- iPhone can be attacked through iMessage vulnerability, how does Apple explain?notably, this vulnerability allows hackers to attack iphones without any user interaction.
- How to Use WinRARthis wikihow teaches you how to download winrar and use it to open rar files on a windows computer. rar files are compressed containers that cannot be opened without special software--in this case, winrar. you'll likely want to use a...