VDB
CVE-2023-40477
CVE-2023-40477
PUBLISHED
WinRAR ist ein Dateiarchivierungsprogramm zum Erstellen und Entpacken von Archiven im RAR oder ZIP Datenformat.
EPSS 91.89% · 99.7th percentile
Risk Scores
EPSS Score
91.89%
99.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| SUSE | SUSE openSUSE | |
| Fedora | Fedora Linux | |
| Xerox | Xerox FreeFlow Print Server v9 for Solaris | |
| win.rar | win.rar WinRAR <6.23 | |
| Xerox | Xerox FreeFlow Print Server v2 / Windows 10 | |
| Xerox | Xerox FreeFlow Print Server v7 | |
| Gentoo | Gentoo Linux | |
| Xerox | Xerox FreeFlow Print Server 9 | |
| SUSE | SUSE Linux | |
| Open Source | Open Source ClamAV <1.2.0 | |
| Ubuntu | Ubuntu Linux | |
| Debian | Debian Linux | |
| Xerox | Xerox FreeFlow Print Server v9 |
Timeline
- Aug 17, 2023 CVE Published
- Aug 20, 2023 PoC Published
- Aug 20, 2023 PoC Published
- Aug 20, 2023 PoC Published
- Aug 20, 2023 PoC Published
- Aug 21, 2023 PoC Published
- Aug 21, 2023 PoC Published
- Aug 21, 2023 PoC Published
- Aug 21, 2023 PoC Published
- Aug 21, 2023 PoC Published
- Aug 21, 2023 PoC Published
- Aug 21, 2023 PoC Published
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-2917.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-2917 advisory
- https://securitydocs.business.xerox.com/wp-content/uploads/2023/11/XRX23-016_FFPSv7-S10_MediaInstall_Nov2023.pdf advisory
- https://securitydocs.business.xerox.com/wp-content/uploads/2023/11/XRX23-017_FFPSv7-S11_MediaInstall_Nov2023.pdf advisory
- https://security.business.xerox.com/wp-content/uploads/2023/11/Xerox-Security-Bulletin-XRX23-019-Xerox%C2%AE-FreeFlow%C2%AE-Print-Server-v9.pdf advisory
- https://securitydocs.business.xerox.com/wp-content/uploads/2023/11/XRX23-021_FFPSv2_Win10_SecurityBulletin_Nov2023.pdf advisory
- https://security.business.xerox.com/wp-content/uploads/2023/11/XRX23-022_FFPSv9-S11_MediaInstall_Nov2023.pdf advisory
- https://security.business.xerox.com/wp-content/uploads/2024/03/Xerox-Security-Bulletin-XRX24-005-Xerox-FreeFlow%C2%AE-Print-Server-v9_Feb-2024.pdf advisory
- https://security.business.xerox.com/wp-content/uploads/2024/03/Xerox%C2%AE-Security-Bulletin-XRX24-001-Xerox%C2%AE-FreeFlow%C2%AE-Print-Server-v9.pdf advisory
- https://lists.suse.com/pipermail/sle-security-updates/2024-November/019796.html advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/3HI2RC7AJAHY74Q6MK7GNGWU6TITB22V/ advisory
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-2093.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-2093 advisory
- https://www.win-rar.com/singlenewsview.html?&L=0&tx_ttnews%5Btt_news%5D=232&cHash=c5bf79590657e32554c6683296a8e8aa advisory
- https://www.zerodayinitiative.com/advisories/ZDI-23-1152/ advisory
- https://github.com/advisories/GHSA-w5x7-vwr2-4x27 advisory
- https://lists.debian.org/debian-lts-announce/2023/08/msg00032.html advisory
- https://lists.debian.org/debian-lts-announce/2023/08/msg00031.html advisory
- https://blog.clamav.net/2023/08/clamav-120-feature-version-and-111-102.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-50480e7e18 advisory
…and 9 more