WinRAR Fixes a 19-year-old Bug That Left Millions of Users Vulnerable

Advertisement
By Harpreet Singh | Updated: 22 February 2019 15:41 IST
Highlights
  • Researchers claim WinRAR had a vulnerability since last 19 years
  • WinRAR has now fixed the bug in a new beta release
  • Potentially, millions of users could have been affected by the bug
WinRAR Fixes a 19-year-old Bug That Left Millions of Users Vulnerable

WinRAR has been a popular file extraction software since the early 2000s

If you've used a Windows PC in the 2000s, chances are that you've used or come across WinRAR. The popular file extraction software boasts of 500 million users. It allows users to extract ZIP and other file archives on their Windows PC. You could even use it without really paying for it. Recently, researchers uncovered a 19-year-old bug that could have affected millions of PCs.

Security researchers at Check Point Research claimed to have discovered a bug that could allow hackers to manipulate WinRAR. The bug allowed hackers to let WinRAR extract a program into a PC's startup folder. After that, the malicious program could run every single time the PC was booted. Researchers say the bug had existed for 19 years.

Check Point Research explained the bug in a detailed blog post on their website. Its researchers claim all someone had to do was rename an ACE archive with a RAR extension. WinACE, the program capable of creating ACE archives, hasn't been updated since 2007.

In a response to Check Point Research, WinRAR has now fixed the bug with a fresh software update. The vulnerability has been patched in the latest version 5.70 beta 1. On Thursday, the company has also released the second beta of version 5.70.

Advertisement

The bug seemed more of a loophole because WinRAR supported ACE archives via a third party tool. WinRAR has now completely dropped support for ACE archives since it's ancient now, and therefore not used any more.

Although there haven't been any reports of hackers exploiting of this vulnerability over the years, but with 500 million users and a bug having existed for 19 years, it seems quite a massive thing. In case you still use WinRAR, make sure you update the software as soon as the fresh stable release is out.

Advertisement

 

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: WinRAR
Advertisement

Related Stories

Popular Mobile Brands
  1. Nothing Phone 3 to Be Equipped With the Snapdragon 8s Gen 4 SoC
  2. OnePlus Nord 5 and Nord CE 5 Colour Options, Key Features Leaked
  3. Samsung Galaxy M36 5G to Launch in India Soon; Design, Price Range Teased
  4. Samsung Galaxy S25 Ultra Price in India Discounted for a Limited Time
  5. Sony Bravia 8 II QD-OLED TV Series Launched in India: See Price, Features
  6. Poco F7 5G to Launch in India and Global Markets on This Date
  7. Samsung Galaxy Watch 8 Series Design Revealed in New Leaked Renders
  8. Trump Mobile T1 Phone With 5,000mAh Battery Announced; See Price, Features
  1. Apple Back to School Offer in India Brings Discounts on iPad Air, MacBook Pro, and iMac
  2. Nintendo Direct Livestream Featuring Donkey Kong Bananza Announced for June 18
  3. Amazfit Active 2 Square Debuts With 1.75-Inch AMOLED Display and Up to 10 Days Battery Life
  4. Samsung’s Exynos 2500 SoC Confirmed to Feature Satellite Connectivity Ahead of Galaxy Z Flip 7 Launch
  5. Nothing Phone 3 Confirmed to Come With Snapdragon 8s Gen 4 SoC Ahead of July 1 Launch
  6. Samsung Galaxy M36 5G India Launch Teased; Rear Design and Price Range Revealed
  7. Reddit Unveils Reddit Community Intelligence, Its Suite of AI-Powered Ad Tools for Enterprises
  8. Sony Bravia 8 II QD-OLED TV Series With Acoustic Surface+ Audio, Studio Calibrated Mode Launched in India
  9. Asus Unveils Refreshed Vivobook S16, S16 OLED Laptops in India Alongside Vivobook S14: Price, Features
  10. Apple Watch Ultra 3 Said to Launch This Year; Product Roadmap for Next Three Years Leaked
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.