An integer overflow and several buffer overflow reads in libyara/modules/macho/macho.c in YARA v4.0.3 and earlier could allow an attacker to either cause denial of service or information disclosure via a malicious Mach-O file. Affects all versions before libyara 4.0.4
References
Link | Resource |
---|---|
https://www.x41-dsec.de/lab/advisories/x41-2021-001-yara/ | Exploit Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XXM224OLGI6KAOROLDPPGGCZ2OQVQ6HH/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FKNXSH5ERG6NELTXCYVJLUPJJJ2TNEBD/ | Mailing List Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=1930175 | Issue Tracking Third Party Advisory |
https://www.openwall.com/lists/oss-security/2021/01/29/2 | Exploit Mailing List Third Party Advisory |
Information
Published : 2021-05-14 14:15
Updated : 2021-05-24 09:30
NVD link : CVE-2021-3402
Mitre link : CVE-2021-3402
JSON object : View
CWE
CWE-190
Integer Overflow or Wraparound
Products Affected
fedoraproject
- fedora
virustotal
- yara