CVE-2017-11328

Heap buffer overflow in the yr_object_array_set_item() function in object.c in YARA 3.x allows a denial-of-service attack by scanning a crafted .NET file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:virustotal:yara:3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:virustotal:yara:3.1.0:*:*:*:*:*:*:*
cpe:2.3:a:virustotal:yara:3.2.0:*:*:*:*:*:*:*
cpe:2.3:a:virustotal:yara:3.3.0:*:*:*:*:*:*:*
cpe:2.3:a:virustotal:yara:3.4.0:*:*:*:*:*:*:*
cpe:2.3:a:virustotal:yara:3.5.0:*:*:*:*:*:*:*
cpe:2.3:a:virustotal:yara:3.6.0:*:*:*:*:*:*:*
cpe:2.3:a:virustotal:yara:3.6.1:*:*:*:*:*:*:*
cpe:2.3:a:virustotal:yara:3.6.2:*:*:*:*:*:*:*
cpe:2.3:a:virustotal:yara:3.6.3:*:*:*:*:*:*:*

History

21 Nov 2024, 03:07

Type Values Removed Values Added
References () https://github.com/VirusTotal/yara/commit/4a342f01e5439b9bb901aff1c6c23c536baeeb3f - Third Party Advisory () https://github.com/VirusTotal/yara/commit/4a342f01e5439b9bb901aff1c6c23c536baeeb3f - Third Party Advisory

Information

Published : 2017-07-17 13:18

Updated : 2024-11-21 03:07


NVD link : CVE-2017-11328

Mitre link : CVE-2017-11328

CVE.ORG link : CVE-2017-11328


JSON object : View

Products Affected

virustotal

  • yara
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer