CVE-2017-11328: Buffer Overflow
Published Jul 14, 2017
·Updated
Heap buffer overflow in the yrobjectarraysetitem() function in object.c in YARA 3.x allows a denial-of-service attack by scanning a crafted .NET file.
Affected Software
10 affected components
VirusTotal yara=3.0.0
VirusTotal yara=3.1.0
VirusTotal yara=3.2.0
VirusTotal yara=3.3.0
VirusTotal yara=3.4.0
VirusTotal yara=3.5.0
VirusTotal yara=3.6.0
VirusTotal yara=3.6.1
VirusTotal yara=3.6.2
VirusTotal yara=3.6.3
Event History
Jul 14, 2017
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-11328?
CVE-2017-11328 is classified as a high-severity vulnerability due to its potential to cause a denial-of-service attack.
2
How do I fix CVE-2017-11328?
To fix CVE-2017-11328, upgrade YARA to version 3.6.4 or later as it contains the security patch for this vulnerability.
3
What software versions are affected by CVE-2017-11328?
CVE-2017-11328 affects YARA versions 3.0.0 through 3.6.3 inclusive.
4
What type of attack is possible with CVE-2017-11328?
CVE-2017-11328 allows attackers to launch a denial-of-service attack by scanning a specially crafted .NET file.
5
Where can I find more information about CVE-2017-11328?
More information about CVE-2017-11328 can be found in the commit history on the VirusTotal YARA GitHub repository.