PatchSiren

Win-Rar CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Win-Rar CVE published 2026-04-05

CVE-2019-25677

CVE-2019-25677 is a denial of service vulnerability in WinRAR 5.61. Local attackers can crash the application by placing a malformed winrar.lng language file in the installation directory. The application will crash when an archive is opened and the test button is pressed, causing an access violation at memory address 004F1DB8 when the application attempts to read invalid data. This vulnerability has a CV [truncated]