Candidate: CVE-2017-5924 PublicDate: 2017-04-03 05:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-5924 Description: libyara/grammar.y in YARA 3.5.0 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted rule that is mishandled in the yr_compiler_destroy function. Ubuntu-Description: Notes: Bugs: https://github.com/VirusTotal/yara/issues/593 Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_yara: upstream: https://github.com/VirusTotal/yara/commit/7f02eca670f29c00a1d2c305e96febae6ce5d37b upstream_yara: needed precise_yara: DNE precise/esm_yara: DNE trusty_yara: ignored (reached end-of-life) trusty/esm_yara: DNE (trusty was needs-triage) vivid/stable-phone-overlay_yara: DNE vivid/ubuntu-core_yara: DNE xenial_yara: ignored (end of standard support, was needed) yakkety_yara: ignored (reached end-of-life) zesty_yara: ignored (reached end-of-life) artful_yara: ignored (reached end-of-life) bionic_yara: not-affected (3.5.0+dfsg-9) cosmic_yara: not-affected (3.5.0+dfsg-9) disco_yara: not-affected (3.5.0+dfsg-9) eoan_yara: not-affected (3.5.0+dfsg-9) focal_yara: not-affected (3.5.0+dfsg-9) groovy_yara: not-affected (3.5.0+dfsg-9) hirsute_yara: not-affected (3.5.0+dfsg-9) impish_yara: not-affected (3.5.0+dfsg-9) jammy_yara: not-affected (3.5.0+dfsg-9) devel_yara: not-affected (3.5.0+dfsg-9)