CVE-2018-12035: High severity virustotal vulnerability
Published Jun 15, 2018
·Updated
In YARA 3.7.1 and prior, parsing a specially crafted compiled rule file can cause an out of bounds write vulnerability in yrexecutecode in libyara/exec.c.
Affected Software
1 affected component
VirusTotal yara<=3.7.1
Remediation
Patch Available
Event History
Jun 15, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-12035?
CVE-2018-12035 is classified as a high-severity vulnerability due to its potential to cause an out of bounds write.
2
How do I fix CVE-2018-12035?
To fix CVE-2018-12035, upgrade YARA to version 3.7.2 or later.
3
What software is affected by CVE-2018-12035?
CVE-2018-12035 affects YARA version 3.7.1 and earlier, specifically in the context of VirusTotal's implementation.
4
What are the consequences of exploiting CVE-2018-12035?
Exploiting CVE-2018-12035 can lead to arbitrary code execution or crashes of the affected application.
5
How does CVE-2018-12035 occur?
CVE-2018-12035 occurs when a specially crafted compiled rule file is parsed, leading to an out of bounds write in the execution code.