Merged code in the issue #157 does not work
Nessuno ha ancora preso questa issue.
Valutazione
- Difficoltà
- 3/5
- Tempo stimato
- 1-2 giorni
- Idoneità per principianti
- 35/100
Direzione di ricerca
Start by reproducing the issue with the two-rule YARA ruleset and the Python call yara.compile('bad_rule.yar', error_on_warning=True). Trace how the Python interface handles warnings from compilation and compare it with the command-line output. Done means error_on_warning reports both warnings instead of only the final warning.
Scritto dal modello di indicizzazione a partire dal testo della issue.
Descrizione
Summary: the Issue #157 was about printing all the warnings with "error_on_warning" enabled. But at the example below we can see that it does not work at the newest version of yara-python.
Yara ruleset:
rule bad_rule1
{
meta:
author = "Rakovskij Stanislav / disasm.me"
date = "01.03.2021"
description = "Rule that uses bad wilecards to raise yara warning"
strings:
$ = {00 [32] 00}
condition:
any of them
}
rule bad_rule2
{
meta:
author = "Rakovskij Stanislav / disasm.me"
date = "01.03.2021"
description = "Rule that uses bad wilecards to raise yara warning"
strings:
$ = {00 [32] 00}
condition:
any of them
}
Output:
/m/d/test_yara_speed> ./yara64.exe bad_rule.yar random_100Mb.bin
bad_rule.yar(8): warning in rule "bad_rule1": $ is slowing down scanning
bad_rule.yar(20): warning in rule "bad_rule2": $ is slowing down scanning
bad_rule1 random_100Mb.bin
bad_rule2 random_100Mb.bin
/m/d/test_yara_speed> python3 -c "import yara; yara.compile('bad_rule.yar', error_on_warning=True)"
Traceback (most recent call last):
File "<string>", line 1, in <module>
yara.WarningError: bad_rule.yar(20): $ is slowing down scanning // <- expected two warnings - on lines 8 and 20, got only the last one.
/m/d/test_yara_speed [1]> ./yara64.exe -v
4.0.5
/m/d/test_yara_speed> python3 -m pip install yara-python
Requirement already satisfied: yara-python in /home/user/.local/lib/python3.8/site-packages (4.0.5)
- Lingua principale
- C
- Stelle
- 754
- Fork
- 191
- Metriche di merge delle PR
- Nessuna PR unita negli ultimi 30g
Preparare l'ambiente
Questo progetto non fornisce container di sviluppo, Dockerfile né guida per i contributori, quindi l'ambiente è a tuo carico: parti dal suo README e consulta la nostra guida al primo contributo per i passaggi generali.
Come iniziare
- Leggi tutta la issue e poi la guida ai contributi del progetto.
- Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
- Fai un fork del repository e lavora su un branch.
- Apri una pull request che faccia riferimento al numero della issue.
Altre issue di VirusTotal/yara-python
-
Difficoltà 3/5 1-2 giorni Idoneità per principianti 35/100
VirusTotal/yara-python#263 · 2 commenti ·
-
Difficoltà 3/5 1-2 giorni Idoneità per principianti 28/100
VirusTotal/yara-python#234 · 2 commenti ·
-
Difficoltà 3/5 1-2 giorni Idoneità per principianti 48/100
VirusTotal/yara-python#218 · 3 reazioni ·
-
Difficoltà 4/5 3-5 giorni Idoneità per principianti 20/100
VirusTotal/yara-python#216 ·
-
Difficoltà 3/5 1-2 giorni Idoneità per principianti 35/100
VirusTotal/yara-python#212 · 11 commenti ·
Tutte le issue di VirusTotal/yara-python
Issue simili
-
area:http-gateway good first issue priority:low type:docs
Difficoltà 2/5 1-3 ore Idoneità per principianti 88/100
crazy-goat/php-fpm-ng#828 ·
I maintainer di solito rispondono entro 1 giorno
-
area:docs good first issue type:docs
Difficoltà 1/5 Meno di un'ora Idoneità per principianti 92/100
I maintainer di solito rispondono entro 1 giorno
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 78/100
-
CVE-2026-18839 popt: size_t underflow in `singleOptionHelp`Forse già presa @pmatilai l’ha presa 34 giorni fa. Aperta
Difficoltà 2/5 1-3 ore Idoneità per principianti 70/100
rpm-software-management/popt#143 ·
-
Difficoltà 1/5 Meno di un'ora Idoneità per principianti 85/100