Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-5020

An exploitable denial of service vulnerability exists in the object lookup functionality of Yara 3.8.1. A specially crafted binary file can cause a negative value to be read to satisfy an assert, resulting in Denial of Service. An attacker can create a malicious binary to trigger this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.7%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.3
Products affected by CVE-2019-5020
  • Virustotal » Yara » Version: 3.8.1
    cpe:2.3:a:virustotal:yara:3.8.1


Contact Us

Shodan ® - All rights reserved