Jump to content

I read the news about winrar version 7.12 have a malware vulnerability right? The solution is update to 7.13, and I already do that.

 

The question is, how about the archive files that already made bu 7.12 version? Am I need to recreate (re-archive) the files with winrar 7.13?

Link to comment
https://linustechtips.com/topic/1620815-winrar-malware-issues/
Share on other sites

Link to post
Share on other sites

We are referring to CVE-2025-6218

31 minutes ago, Wfz234 said:

The question is, how about the archive files that already made bu 7.12 version? Am I need to recreate (re-archive) the files with winrar 7.13?

No. As far as I'm understanding, an attacker can create a .rar that exploits lack of data sanitization in WinRAR to perpetrate malicious activity. Upon extracting a malicious .rar, your computer can become infected. 

 

This does not mean .rar files you have created can be exploded. Rather malicious .rar files can exploit the vulnerability that exists in WinRAR 7.12 upon extraction. 7.13 has corrected this lack of sanitization and malicious .rar files can no longer take advantage. 

 

Low Level has great video if you are interested in the inner workings of the vulnerability:

 

ask me about my homelab

Link to comment
https://linustechtips.com/topic/1620815-winrar-malware-issues/#findComment-16786223
Share on other sites

Link to post
Share on other sites

TBH I just use the built in windows explorer unzipper....
Regardless, yes, there is a malware vulnerability in 7.12. But that vulnerability is in the unzipping procedure. If a bad actor wanted to exploit that they'd need to get you to unzip an infected zip file using 7.12. Unzipping the same file with 7.13 wouldn't hurt you at all unless the contents of the zip itself were malware

5950X/4090FE primary rig  |  1920X/1070Ti Unraid for dockers  |  200TB TrueNAS w/ 1:1 backup

Link to comment
https://linustechtips.com/topic/1620815-winrar-malware-issues/#findComment-16786315
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×