How about winrar?  How does it rate security wise?

-----Original Message-----
From: Mark Roberts [mailto:[EMAIL PROTECTED]
Sent: Thursday, March 04, 2004 9:50 AM
To: [EMAIL PROTECTED]
Subject: OT: Viruses and WinZip


This just in, if you have an older version of WinZip you may be
vulnerable to a buffer overflow trick:

Because of issues involved with the decoding of MIME parameters within
certain archive types (files with .mim, .uue, .uu, .b64, .bhx, .hqx
and .xxe extensions), WinZip versions prior to the current, released
Version 9.0 are vulnerable to a buffer overflow which can lead to the
execution of arbitrary code simply by opening a specifically crafted
archive. If you use WinZip, the ISC recommends that you either upgrade
to version 9.0 or disable WinZip's association with 
.b64 
.bhx 
.hqx 
.mim 
.uu
.uue 
.xxe
file extensions.

-- 
Mark Roberts
Photography and writing
www.robertstech.com

Reply via email to