Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-5923

Опубликовано: 03 апр. 2017
Источник: debian
EPSS Низкий

Описание

libyara/grammar.y in YARA 3.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted rule that is mishandled in the yara_yyparse function.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
yarafixed3.5.0+dfsg-9package
yarafixed3.1.0-2+deb8u1jessiepackage

Примечания

  • https://github.com/VirusTotal/yara/issues/597

EPSS

Процентиль: 73%
0.00787
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 9 лет назад

libyara/grammar.y in YARA 3.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted rule that is mishandled in the yara_yyparse function.

CVSS3: 7.5
nvd
почти 9 лет назад

libyara/grammar.y in YARA 3.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted rule that is mishandled in the yara_yyparse function.

CVSS3: 7.5
github
больше 3 лет назад

libyara/grammar.y in YARA 3.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted rule that is mishandled in the yara_yyparse function.

EPSS

Процентиль: 73%
0.00787
Низкий