VYPR
Unrated severityNVD Advisory· Published Dec 31, 2005· Updated Apr 16, 2026

CVE-2005-4620

CVE-2005-4620

Description

Buffer overflow in WinRAR 3.50 and earlier allows local users to execute arbitrary code via a long command-line argument. NOTE: because this program executes with the privileges of the invoking user, and because remote programs do not normally have the ability to specify a command-line argument for this program, there may not be a typical attack vector for the issue that crosses privilege boundaries. Therefore this may not be a vulnerability.

Affected products

12
  • Rarlab/Winrar12 versions
    cpe:2.3:a:rarlab:winrar:2.90:*:*:*:*:*:*:*+ 11 more
    • cpe:2.3:a:rarlab:winrar:2.90:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.10:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.10_beta3:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.10_beta5:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.11:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.20:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.30:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.40:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.41:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.42:*:*:*:*:*:*:*
    • cpe:2.3:a:rarlab:winrar:3.50:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.