cbcvebase.
CVE-2005-1194
published 2005-05-04

CVE-2005-1194: Stack-based buffer overflow in the ieee_putascii function for nasm 0.98 and earlier allows attackers to execute arbitrary code via a crafted asm file, a…

PriorityP419medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
0.51%
39.9th percentile
Stack-based buffer overflow in the ieee_putascii function for nasm 0.98 and earlier allows attackers to execute arbitrary code via a crafted asm file, a different vulnerability than CVE-2004-1287.

Affected

17 ranges
VendorProductVersion rangeFixed in
debiannasm< nasm 0.98.38-1.1 (bookworm)nasm 0.98.38-1.1 (bookworm)
debiannasm< nasm 0.98.38-1.2 (bookworm)nasm 0.98.38-1.2 (bookworm)
nasmnasm>= 0 < 0.98.38-1.10.98.38-1.1
nasmnasm>= 0 < 0.98.38-1.20.98.38-1.2
nasmnasm>= 0 < 0.98.38-1.10.98.38-1.1
nasmnasm>= 0 < 0.98.38-1.20.98.38-1.2
nasmnasm>= 0 < 0.98.38-1.10.98.38-1.1
nasmnasm>= 0 < 0.98.38-1.20.98.38-1.2
nasmnasm>= 0 < 0.98.38-1.10.98.38-1.1
nasmnasm>= 0 < 0.98.38-1.20.98.38-1.2
nasmnetwide_assembler
redhatenterprise_linux
redhatenterprise_linux
redhatenterprise_linux
redhatenterprise_linux_desktop
redhatenterprise_linux_desktop
redhatlinux_advanced_workstation

CVSS provenance

nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv10.0CRITICAL
vendor_debian10.0CRITICAL
vendor_redhat10.0CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.