Files
CVEs-PoC/2018/CVE-2018-19976.md
T
2025-09-29 21:09:30 +02:00

761 B

CVE-2018-19976

Description

In YARA 3.8.1, bytecode in a specially crafted compiled rule is exposed to information about its environment, in libyara/exec.c. This is a consequence of the design of the YARA virtual machine.

POC

Reference

Github