libyara/grammar.y in YARA 3.5.0 allows remote malicious users to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted rule that is mishandled in the yara_yyparse function.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
virustotal yara 3.5.0 |