Skip to content

Does not handle strings that are not \0-terminated; if given one it may perform an over-read (it could cause a crash if unprotected) #12

@7elmie

Description

@7elmie
		RegSetValue(HKEY_LOCAL_MACHINE,"Software\\Microsoft\\Windows\\CurrentVersion\\Run",REG_SZ,winstartpath,strlen(winstartpath));

in line 203

Why is this an issue?
At Codacy we strive to provide great descriptions for our patterns. With good explanations developers can better understand issues and even learn how to fix them.

For this tool we are not yet meeting this standard but you can help us improve the docs. To know more, take a look at our tool documentation guide.

You can also visit the tool's website to find useful tips about the patterns.

https://github.com/7elmie/malware/blob/c0aa3165f1584a70355b0aafde66486e485115d9/yahasux/yahasux.c

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions