JDownloader Community - Appwork GmbH
 

Reply
 
Thread Tools Display Modes
  #1  
Old 28.08.2023, 14:42
Jiaz's Avatar
Jiaz Jiaz is offline
JD Manager
 
Join Date: Mar 2009
Location: Germany
Posts: 79,084
Exclamation CVE-2023-40477 RAR recovery volumes NOT AFFECTED

JDownloader is not affected by CVE-2023-40477 ( rarlab.com/vuln_rev3_names.html )
1.) JDownloader doesn't support "rev"/recovery volumes files at all
2.) the underlying extraction code sevenzipjbinding is from (p)7zip and uses on own implementation and not on original unrar source, and also doesn't bring support for rev/recovery volumes
__________________
JD-Dev & Server-Admin

Last edited by Jiaz; 28.08.2023 at 14:51.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

All times are GMT +2. The time now is 12:15.
Provided By AppWork GmbH | Privacy | Imprint
Parts of the Design are used from Kirsch designed by Andrew & Austin
Powered by vBulletin® Version 3.8.10 Beta 1
Copyright ©2000 - 2023, Jelsoft Enterprises Ltd.