CVE-2005-1194

10 documents8 sources
Severity
4.6MEDIUM
EPSS
0.1%
top 65.42%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 4
Latest updateMay 1

Description

Stack-based buffer overflow in the ieee_putascii function for nasm 0.98 and earlier allows attackers to execute arbitrary code via a crafted asm file, a different vulnerability than CVE-2004-1287.

CVSS vector

AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4

Affected Packages3 packages

Debiannasm< 0.98.38-1.2+3

Also affects: Enterprise Linux 2.1, 3.0, 4.0

Patches

🔴Vulnerability Details

3
GHSA
GHSA-pc6g-x96w-gjr7: Stack-based buffer overflow in the ieee_putascii function for nasm 02022-05-01
CVEList
CVE-2005-1194: Stack-based buffer overflow in the ieee_putascii function for nasm 02005-05-04
OSV
CVE-2005-1194: Stack-based buffer overflow in the ieee_putascii function for nasm 02005-05-04

📋Vendor Advisories

4
Ubuntu
nasm vulnerability2005-05-18
Red Hat
security flaw2005-03-31
Debian
CVE-2005-1194: nasm - Stack-based buffer overflow in the ieee_putascii function for nasm 0.98 and earl...2005
Red Hat
security flaw2004-12-15

💬Community

2
Bugzilla
CVE-2005-1194 security flaw2018-08-16
Bugzilla
CVE-2004-1287 security flaw2018-08-16