Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-8294

Опубликовано: 27 апр. 2017
Источник: debian

Описание

libyara/re.c in the regex component in YARA 3.5.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted rule that is mishandled in the yr_re_exec function.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
yarafixed3.6.0+dfsg-1package
yaraignoredstretchpackage
yaraignoredjessiepackage

Примечания

  • https://github.com/VirusTotal/yara/issues/646

  • https://github.com/VirusTotal/yara/commit/83d799804648c2a0895d40a19835d9b757c6fa4e

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 9 лет назад

libyara/re.c in the regex component in YARA 3.5.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted rule that is mishandled in the yr_re_exec function.

CVSS3: 7.5
nvd
почти 9 лет назад

libyara/re.c in the regex component in YARA 3.5.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted rule that is mishandled in the yr_re_exec function.

CVSS3: 7.5
github
больше 3 лет назад

libyara/re.c in the regex component in YARA 3.5.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted rule that is mishandled in the yr_re_exec function.