CVE-2017-9304: High severity VirusTotal yara vulnerability
Published May 31, 2017
·Updated
libyara/re.c in the regexp module in YARA 3.5.0 allows remote attackers to cause a denial of service (stack consumption) via a crafted rule that is mishandled in the yrreemit function.
Affected Software
1 affected component
VirusTotal yara=3.5.0
Remediation
Patch Available
Event History
May 31, 2017
CVE Published
via MITRE·03:54 AM
Data Sourced
via MITRE·03:54 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-9304?
CVE-2017-9304 has been classified as a denial of service vulnerability.
2
How can I mitigate the effects of CVE-2017-9304?
To mitigate CVE-2017-9304, avoid using crafted YARA rules that could exploit the vulnerability.
3
What software versions are affected by CVE-2017-9304?
CVE-2017-9304 specifically affects YARA version 3.5.0.
4
Is there a patch available for CVE-2017-9304?
Yes, a patch has been released to address CVE-2017-9304, and users should update to a later version of YARA.
5
What impact does CVE-2017-9304 have on system performance?
CVE-2017-9304 can lead to stack consumption, resulting in denial of service and affecting system performance.