Rarlab Rar: 6.01
A logical flaw that allows attackers to execute arbitrary code when a user attempts to view a benign file (like a .jpg or .pdf ) inside a ZIP archive. This has been exploited by government-backed and cybercrime groups to deliver malware.
Full RAR and ZIP support. Safe 256-bit AES Encryption. Most Translated Software. Integrated Back-Up Features. WhatsNew.txt - RarLab RarLab RAR 6.01
At its release, version 6.01 included standard WinRAR capabilities: A logical flaw that allows attackers to execute
"Rarlab RAR 6.01" refers to a version of the popular compression tool released in 2021 . While it remains functional for basic archiving, it is now considered legacy and highly insecure due to multiple high-severity vulnerabilities discovered in subsequent years that affect all versions prior to 6.23 and 7.12. Critical Security Vulnerabilities Safe 256-bit AES Encryption
A remote code execution vulnerability caused by improper validation of user-supplied data in recovery volumes. It allows a specially crafted archive to execute code in the context of the current process.
More recent critical flaws that allow attackers to place malicious files in sensitive locations, such as the Windows Startup folder , leading to code execution upon the next login. Key Features of Version 6.01