Vulnerabilities > Rarzilla

DATE CVE VULNERABILITY TITLE RISK
2017-07-12 CVE-2017-11190 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Rarzilla Unrar-Free 0.0.1
unrarlib.c in unrar-free 0.0.1, when _DEBUG_LOG mode is enabled, might allow remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via an RAR archive containing a long filename.
local
low complexity
rarzilla CWE-119
7.8
2017-07-12 CVE-2017-11189 NULL Pointer Dereference vulnerability in Rarzilla Unrar-Free 0.0.1
unrarlib.c in unrar-free 0.0.1 might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash), which could be relevant if unrarlib is used as library code for a long-running application.
network
low complexity
rarzilla CWE-476
6.5