← Back

Arj Archiver

arj_archiver

Vendor: Arj Software • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
3Arj Software
DebianFedoraproject
3Arj Archiver
Debian LinuxFedora
May 6, 2026
Apr 8, 2015
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in Open-source ARJ archiver 3.10.22 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted ARJ archive.
2Arj Software
Fedoraproject
2Arj Archiver
Fedora
May 6, 2026
Apr 8, 2015
N/A· v4
N/A· v3
5.8 MEDIUM· v2
Open-source ARJ archiver 3.10.22 does not properly remove leading slashes from paths, which allows remote attackers to conduct absolute path traversal attacks and write to arbitrary files via multiple leading slashes in...Show more
Open-source ARJ archiver 3.10.22 does not properly remove leading slashes from paths, which allows remote attackers to conduct absolute path traversal attacks and write to arbitrary files via multiple leading slashes in a path in an ARJ archive.Show less
2Arj Software
Fedoraproject
2Arj Archiver
Fedora
May 6, 2026
Apr 8, 2015
N/A· v4
N/A· v3
5.8 MEDIUM· v2
Open-source ARJ archiver 3.10.22 allows remote attackers to conduct directory traversal attacks via a symlink attack in an ARJ archive.