5.5

CVE-2018-16517

Exploit
asm/labels.c in Netwide Assembler (NASM) is prone to NULL Pointer Dereference, which allows the attacker to cause a denial of service via a crafted file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NasmNetwide Assembler Version <= 2.13.03
NasmNetwide Assembler Version2.14 Updaterc15
NasmNetwide Assembler Version2.14.0 Updaterc1
NasmNetwide Assembler Version2.14.0 Updaterc10
NasmNetwide Assembler Version2.14.0 Updaterc11
NasmNetwide Assembler Version2.14.0 Updaterc12
NasmNetwide Assembler Version2.14.0 Updaterc13
NasmNetwide Assembler Version2.14.0 Updaterc14
NasmNetwide Assembler Version2.14.0 Updaterc2
NasmNetwide Assembler Version2.14.0 Updaterc3
NasmNetwide Assembler Version2.14.0 Updaterc4
NasmNetwide Assembler Version2.14.0 Updaterc5
NasmNetwide Assembler Version2.14.0 Updaterc6
NasmNetwide Assembler Version2.14.0 Updaterc7
NasmNetwide Assembler Version2.14.0 Updaterc8
NasmNetwide Assembler Version2.14.0 Updaterc9
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.51% 0.806
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.