--------------------------------------------------------------------------------Fedora Update Notification
FEDORA-2017-fa52efdf32
2017-07-11 18:56:33.226328
--------------------------------------------------------------------------------Name        : yara
Product     : Fedora 25
Version     : 3.6.2
Release     : 1.fc25
URL         : http://VirusTotal.github.io/yara/
Summary     : Pattern matching Swiss knife for malware researchers
Description :
YARA is a tool aimed at (but not limited to) helping malware researchers to
identify and classify malware samples. With YARA you can create descriptions
of malware families (or whatever you want to describe) based on textual or
binary patterns. Each description, a.k.a rule, consists of a set of strings
and a Boolean expression which determine its logic.

--------------------------------------------------------------------------------Update Information:

Security fix for CVE-2017-9304, CVE-2017-9465
--------------------------------------------------------------------------------References:

  [ 1 ] Bug #1459490 - CVE-2017-9465 yara: Buffer over-read in yr_arena_write_data function
        https://bugzilla.redhat.com/show_bug.cgi?id=1459490
--------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade yara' at the command line.
For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora 25: yara Security Update 2017-fa52efdf32

July 12, 2017
Security fix for CVE-2017-9304, CVE-2017-9465

Summary

YARA is a tool aimed at (but not limited to) helping malware researchers to

identify and classify malware samples. With YARA you can create descriptions

of malware families (or whatever you want to describe) based on textual or

binary patterns. Each description, a.k.a rule, consists of a set of strings

and a Boolean expression which determine its logic.

Security fix for CVE-2017-9304, CVE-2017-9465

[ 1 ] Bug #1459490 - CVE-2017-9465 yara: Buffer over-read in yr_arena_write_data function

https://bugzilla.redhat.com/show_bug.cgi?id=1459490

su -c 'dnf upgrade yara' at the command line.

For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

FEDORA-2017-fa52efdf32 2017-07-11 18:56:33.226328 Product : Fedora 25 Version : 3.6.2 Release : 1.fc25 URL : http://VirusTotal.github.io/yara/ Summary : Pattern matching Swiss knife for malware researchers Description : YARA is a tool aimed at (but not limited to) helping malware researchers to identify and classify malware samples. With YARA you can create descriptions of malware families (or whatever you want to describe) based on textual or binary patterns. Each description, a.k.a rule, consists of a set of strings and a Boolean expression which determine its logic. Security fix for CVE-2017-9304, CVE-2017-9465 [ 1 ] Bug #1459490 - CVE-2017-9465 yara: Buffer over-read in yr_arena_write_data function https://bugzilla.redhat.com/show_bug.cgi?id=1459490 su -c 'dnf upgrade yara' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Change Log

References

Update Instructions

Severity
Product : Fedora 25
Version : 3.6.2
Release : 1.fc25
URL : http://VirusTotal.github.io/yara/
Summary : Pattern matching Swiss knife for malware researchers

Related News