CVE Number Vulnerability Product Severity Date
CVE-2023-40477 WinRAR Buffer Overflow Vulnerability WinRAR Critical 04-03-2024

Technical Information

A buffer overflow vulnerability occurs when processing recovery volume names in the old RAR 3.0 format. The user must start unpacking a RAR file in the same folder as a REV file with a malformed name to trigger this vulnerability.

Patch release date: Aug 2, 2023
Further information on this vulnerability is available at:

Affected Software

WinRAR before 6.23