WinRAR Fixes a 19-year-old Bug That Left Millions of Users Vulnerable

Advertisement
By Harpreet Singh | Updated: 22 February 2019 15:41 IST
Highlights
  • Researchers claim WinRAR had a vulnerability since last 19 years
  • WinRAR has now fixed the bug in a new beta release
  • Potentially, millions of users could have been affected by the bug

WinRAR has been a popular file extraction software since the early 2000s

If you've used a Windows PC in the 2000s, chances are that you've used or come across WinRAR. The popular file extraction software boasts of 500 million users. It allows users to extract ZIP and other file archives on their Windows PC. You could even use it without really paying for it. Recently, researchers uncovered a 19-year-old bug that could have affected millions of PCs.

Security researchers at Check Point Research claimed to have discovered a bug that could allow hackers to manipulate WinRAR. The bug allowed hackers to let WinRAR extract a program into a PC's startup folder. After that, the malicious program could run every single time the PC was booted. Researchers say the bug had existed for 19 years.

Advertisement

Check Point Research explained the bug in a detailed blog post on their website. Its researchers claim all someone had to do was rename an ACE archive with a RAR extension. WinACE, the program capable of creating ACE archives, hasn't been updated since 2007.

In a response to Check Point Research, WinRAR has now fixed the bug with a fresh software update. The vulnerability has been patched in the latest version 5.70 beta 1. On Thursday, the company has also released the second beta of version 5.70.

Advertisement

The bug seemed more of a loophole because WinRAR supported ACE archives via a third party tool. WinRAR has now completely dropped support for ACE archives since it's ancient now, and therefore not used any more.

Although there haven't been any reports of hackers exploiting of this vulnerability over the years, but with 500 million users and a bug having existed for 19 years, it seems quite a massive thing. In case you still use WinRAR, make sure you update the software as soon as the fresh stable release is out.

Advertisement

 

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: WinRAR
Advertisement

Related Stories

Popular Mobile Brands
  1. New Apple Arcade Games Coming in June 2026: The Full List
  2. New OTT Releases This Week : Dhurandhar 2, Maa Behen, The Pyramid Scheme, and More
  3. Redmi Turbo 5 India Launch Date Revealed as Company Confirms Key Specs
  4. Xiaomi Pad 8 Price Increased: Here's How Much It Costs Now
  5. Tecno Pova 8 to Launch in India With 8,000mAh Battery on This Day
  6. OnePlus 15, Nord 6, Pad 4 Receive Discounts During Community Sale 2026
  1. Sahara Meteorite May Be Fragment of a Lost Moon-Sized World, Study Suggests
  2. OpenAI Introduces Smarter ChatGPT Memory, Adds Dreaming Architecture
  3. Tecno Pova 8 India Launch Date Announced; Battery Size, Design, Colour Options Teased
  4. Samsung Reportedly Starts Internal Testing of Android 17-Based One UI 9 for Galaxy S25 Series
  5. Bybit Lists Western Union’s USDPT Stablecoin for Trading and Transfers
  6. Xiaomi Pad 8 Price Hiked in India: Here’s How Much It Costs Now
  7. Instagram Reels Influencing Nearly Half of Purchase Decisions in India, Meta Study Claims
  8. OnePlus Turbo 6X, OnePlus Turbo 6X Pro Colour Options, Price Range, Key Specifications Teased
  9. Sattendru Maarudhu Vaanilai Now Streaming Online: Where to Watch Jai’s Romantic Thriller Movie
  10. Asics GEL-Kayano 33 Launched in India With New Stability Tech, FluidSupport System
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.