Vulnerabilities > CVE-2018-25018 - Out-of-bounds Write vulnerability in Rarlab Unrar 6.0.3

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
rarlab
CWE-787

Summary

UnRAR 5.6.1.7 through 5.7.4 and 6.0.3 has an out-of-bounds write during a memcpy in QuickOpen::ReadRaw when called from QuickOpen::ReadNext.

Vulnerable Configurations

Part Description Count
Application
Rarlab
2
OS
Linux
1

Common Weakness Enumeration (CWE)