CVE-2023-40857
published 2023-08-28CVE-2023-40857: Buffer Overflow vulnerability in VirusTotal yara v.4.3.2 allows a remote attacker to execute arbtirary code via the yr_execute_cod function in the exe.c…
PriorityP341high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
0.87%
54.6th percentile
Buffer Overflow vulnerability in VirusTotal yara v.4.3.2 allows a remote attacker to execute arbtirary code via the yr_execute_cod function in the exe.c component.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| virustotal | yara | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wr74-v8h4-7w2f: Buffer Overflow vulnerability in VirusTotal yara v
ghsa_unreviewed·2023-08-29
CVE-2023-40857 [HIGH] CWE-787 GHSA-wr74-v8h4-7w2f: Buffer Overflow vulnerability in VirusTotal yara v
Buffer Overflow vulnerability in VirusTotal yara v.4.3.2 allows a remote attacker to execute arbtirary code via the yr_execute_cod function in the exe.c component.
OSV
CVE-2023-40857: Buffer Overflow vulnerability in VirusTotal yara v
osv·2023-08-28·CVSS 8.8
CVE-2023-40857 [HIGH] CVE-2023-40857: Buffer Overflow vulnerability in VirusTotal yara v
Buffer Overflow vulnerability in VirusTotal yara v.4.3.2 allows a remote attacker to execute arbtirary code via the yr_execute_cod function in the exe.c component.
Red Hat
yara: buffer overflow that allows a remote attacker to execute arbtirary code via the yr_execute_cod function
vendor_redhat·2023-08-29·CVSS 8.8
CVE-2023-40857 [HIGH] CWE-119 yara: buffer overflow that allows a remote attacker to execute arbtirary code via the yr_execute_cod function
yara: buffer overflow that allows a remote attacker to execute arbtirary code via the yr_execute_cod function
Buffer Overflow vulnerability in VirusTotal yara v.4.3.2 allows a remote attacker to execute arbtirary code via the yr_execute_cod function in the exe.c component.
A flaw was found in the yara library. This issue occurs due to a buffer overflow vulnerability in the exe.c component that allows a remote attacker to execute arbtirary code via the yr_execute_cod function.
Statement: The Insights Malware app only supports running the rules file we provide to the customer. We ensure the rules file we provide runs without failure by yara is not corrupted. We can't do much about customers choosing to run their own rules files and crashing yara if the rules file they provide is corrupt.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-08-28
Published