WinRAR vulnerability CVE-2023-40477: Also third-party software affected?

Sicherheit (Pexels, allgemeine Nutzung)In my blog post WinRAR Code Execution Vulnerability CVE-2023-40477 I had mentioned a vulnerability in WinRAR, which has been fixed with the update to WinRAR version 6.23. Andreas Marx from AV-Test recently pointed out that basically all software that uses WinRAR libraries is vulnerable in principle and needs to be updated to newer versions. I had added the information to the above blog post and pointed out that virus scanners and security software may use these outdated WinRAR libraries. So if necessary check the Windows system for the library files mentioned in the blog post. Addendum: According to the WinRAR developer the libraries are not affected by the vulnerability.


Advertising


Advertising

This entry was posted in Security, Software, Windows and tagged , , . Bookmark the permalink.
Note: Please note the rules for commenting on the blog (first comments and linked posts end up in moderation, I release them every few hours, I rigorously delete SEO posts/SPAM).