Message Area
Casually read the BBS message area using an easy to use interface. Messages are categorized exactly like they are on the BBS. You may post new messages or reply to existing messages!

You are not logged in. Login here for full access privileges.

Previous Message | Next Message | Back to BBS Software Chatter  <--  <--- Return to Home Page
   Networked Database  BBS Software Chatter   [770 / 864] RSS
 From   To   Subject   Date/Time 
Message   Matthew Munson    All   Security Advisory on RAR   March 16, 2019
 11:12 AM *  

Upgrade to 5.70 ASAP

https://www.ghacks.net/2019/02/21/winrar-has-...
e-fix/

WinRAR has a critical security bug: here is the fix
by Martin Brinkmann on February 21, 2019 in Security - 33 comments
WinRAR is a very popular software to create and extract archives on Windows and
 other 
supported operating systems. Part of its popularity comes from its support for
different 
types of packing formats, another that the software's trial version never
expires.

A bug was discovered recently that affects all versions of WinRAR prior to
5.70. The bug, 
a remote code execution vulnerability, affects all WinRAR versions and thus all
 500 
million users that use the application.

Security researchers discovered a flaw in a library that WinRAR uses to extract
 files from 
archives packed with the ACE format.

Attackers can exploit the vulnerability by pushing specially prepared archives
to user 
systems. The bug can be abused to extract the files into any folder on the
system 
instead of the folder selected by the user or the default folder for extracted
files. 
--- Platinum Xpress/Win/WINServer v7.0
 * Origin: Inland Utopia BBS * Ontario, CA * iutopia.dtdns.net (1:218/109)
  Show ANSI Codes | Hide BBCodes | Show Color Codes | Hide Encoding | Hide HTML Tags | Show Routing
Previous Message | Next Message | Back to BBS Software Chatter  <--  <--- Return to Home Page

VADV-PHP
Execution Time: 0.0824 seconds

If you experience any problems with this website or need help, contact the webmaster.
VADV-PHP Copyright © 2002-2024 Steve Winn, Aspect Technologies. All Rights Reserved.
Virtual Advanced Copyright © 1995-1997 Roland De Graaf.
v2.0.140505

Warning: Unknown: open(c:\Sessions\sess_a8oc60osbesntl2sf9dm6u64j6, O_RDWR) failed: No such file or directory (2) in Unknown on line 0 Warning: Unknown: Failed to write session data (files). Please verify that the current setting of session.save_path is correct (c:\Sessions) in Unknown on line 0 PHP Warning: session_start(): open(c:\Sessions\sess_a8oc60osbesntl2sf9dm6u64j6, O_RDWR) failed: No such file or directory (2) in D:\wc5\http\public\VADV\include\common.inc.php on line 45 PHP Warning: Unknown: open(c:\Sessions\sess_a8oc60osbesntl2sf9dm6u64j6, O_RDWR) failed: No such file or directory (2) in Unknown on line 0 PHP Warning: Unknown: Failed to write session data (files). Please verify that the current setting of session.save_path is correct (c:\Sessions) in Unknown on line 0