Use-after-free in YARA - CVE-2017-5924
Published: April 3, 2017 / Updated: January 26, 2021
Vulnerability details
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a use-after-free error when processing a crafted rule that is mishandled in the yr_compiler_destroy function. A remote attackers can cause a denial of service (use-after-free and application crash).
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.
Affected software
Fedora
Ubuntu
yara (Ubuntu package)
yara
How to mitigate CVE-2017-5924
yara - addressed in versions 3.5.0-7.el7, 3.5.0-7.fc24, 3.5.0-7.fc25, 3.5.0-7.fc26, 3.6.0-1.el7, 3.6.0-1.fc24, 3.6.0-1.fc25, 3.6.0-1.fc26, 3.11.0-1.el6
External References
Related Security Bulletins
- Multiple vulnerabilities in VirusTotal YARA
- Fedora 26 update for yara
- Fedora 25 update for yara
- Fedora 24 update for yara
- Fedora EPEL 7 update for yara
- Fedora 26 update for yara
- Fedora 24 update for yara
- Fedora 25 update for yara
- Fedora EPEL 7 update for yara
- Fedora EPEL 6 update for yara
- Ubuntu update for yara