{"id":"CVE-2017-11190","details":"unrarlib.c in unrar-free 0.0.1, when _DEBUG_LOG mode is enabled, might allow remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via an RAR archive containing a long filename.","modified":"2026-03-12T22:32:24.085778Z","published":"2017-07-12T16:29:00.360Z","references":[{"type":"ADVISORY","url":"https://github.com/0x09AL/my-exploits/blob/master/pocs/unrar-free/buffer-overflow/DESCRIPTION"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://gitlab.com/bgermann/unrar-free","events":[{"introduced":"0"},{"last_affected":"383774d8cbff606ec32ca521d04e631a74bea1d9"}],"database_specific":{"versions":[{"introduced":"0"},{"last_affected":"0.0.1"}]}}],"versions":["0.0.1","import-unrarlib-0.4.0"],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-11190.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"}]}