Nasm

Netwide Assembler

72 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.2%
  • Veröffentlicht 21.12.2017 03:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in is_mmacro() in asm/preproc.c that will cause a remote denial of service attack, because of a missing check for the relationship between minimum and maximum parameter counts.

Exploit
  • EPSS 0.18%
  • Veröffentlicht 21.12.2017 03:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_getline in asm/preproc.c that will cause a remote denial of service attack.

Exploit
  • EPSS 0.18%
  • Veröffentlicht 21.12.2017 03:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_verror in asm/preproc.c that will cause a remote denial of service attack.

Exploit
  • EPSS 0.68%
  • Veröffentlicht 21.12.2017 03:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer over-read that will cause a remote denial of service attack, related to a while loop in paste_tokens in asm/preproc.c.

Exploit
  • EPSS 0.2%
  • Veröffentlicht 21.12.2017 03:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in the function find_cc() in asm/preproc.c that will cause a remote denial of service attack, because pointers associated with skip_white_ calls are not validated.

Exploit
  • EPSS 0.18%
  • Veröffentlicht 21.12.2017 03:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_list_one_macro in asm/preproc.c that will lead to a remote denial of service attack, related to mishandling of operand-type errors.

Exploit
  • EPSS 0.19%
  • Veröffentlicht 09.09.2017 08:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in the function paste_tokens() in preproc.c, aka a NULL pointer dereference. It will lead to remote denial of service.

  • EPSS 0.24%
  • Veröffentlicht 08.07.2017 17:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.

Exploit
  • EPSS 0.62%
  • Veröffentlicht 29.06.2017 23:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, there are multiple heap use after free vulnerabilities in the tool nasm. The related heap is allocated in the token() function and freed in the detoken() function (called by pp_getline()) - it is used again at mul...

Exploit
  • EPSS 1.62%
  • Veröffentlicht 08.09.2009 10:30:01
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerability than CVE-2008-2719.