Skip to content
appaloosa scout logo main rounded
N/A

CVE-2004-1254

WinRAR 3.40, and possibly earlier versions, allows remote attackers to execute arbitrary code via a ZIP file containing a file with a long filename, possibly causing an integer overflow that leads to a buffer overflow.

EPSS 5.2% percentile 90.0%

Affected tracked apps

Vulnerable CPE configurations

Vendor Product Platform Versions CPE 2.3 URI
rarlab winrar Windows cpe:2.3:a:rarlab:winrar:3.0.0:*:*:*:*:*:*:*
rarlab winrar Windows cpe:2.3:a:rarlab:winrar:3.10:*:*:*:*:*:*:*
rarlab winrar Windows cpe:2.3:a:rarlab:winrar:3.10_beta3:*:*:*:*:*:*:*
rarlab winrar Windows cpe:2.3:a:rarlab:winrar:3.10_beta5:*:*:*:*:*:*:*
rarlab winrar Windows cpe:2.3:a:rarlab:winrar:3.11:*:*:*:*:*:*:*
rarlab winrar Windows cpe:2.3:a:rarlab:winrar:3.20:*:*:*:*:*:*:*
rarlab winrar Windows cpe:2.3:a:rarlab:winrar:3.40:*:*:*:*:*:*:*
rarlab winrar Windows cpe:2.3:a:rarlab:winrar:3.41:*:*:*:*:*:*:*
View on NVD ↗