CVE-2008-7177
published 2009-09-08CVE-2008-7177: Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerability than…
PriorityP335critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
2.39%
82.1th percentile
Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerability than CVE-2008-2719.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nasm | < nasm 2.03.01-1 (bookworm) | nasm 2.03.01-1 (bookworm) |
| nasm | nasm | >= 0 < 2.03.01-1 | 2.03.01-1 |
| nasm | nasm | >= 0 < 2.03.01-1 | 2.03.01-1 |
| nasm | nasm | >= 0 < 2.03.01-1 | 2.03.01-1 |
| nasm | nasm | >= 0 < 2.03.01-1 | 2.03.01-1 |
| nasm | netwide_assembler | <= 2.03.01 | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv6.8MEDIUM
vendor_debian6.8LOW
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wx92-p8m2-phh4: Buffer overflow in the listing module in Netwide Assembler (NASM) before 2
ghsa_unreviewed·2022-05-14·CVSS 6.8
CVE-2008-7177 [MEDIUM] CWE-119 GHSA-wx92-p8m2-phh4: Buffer overflow in the listing module in Netwide Assembler (NASM) before 2
Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerability than CVE-2008-2719.
OSV
CVE-2008-7177: Buffer overflow in the listing module in Netwide Assembler (NASM) before 2
osv·2009-09-08·CVSS 6.8
CVE-2008-7177 [MEDIUM] CVE-2008-7177: Buffer overflow in the listing module in Netwide Assembler (NASM) before 2
Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerability than CVE-2008-2719.
Debian
CVE-2008-7177: nasm - Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01...
vendor_debian·2008·CVSS 6.8
CVE-2008-7177 [MEDIUM] CVE-2008-7177: nasm - Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01...
Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerability than CVE-2008-2719.
Scope: local
bookworm: resolved (fixed in 2.03.01-1)
bullseye: resolved (fixed in 2.03.01-1)
forky: resolved (fixed in 2.03.01-1)
sid: resolved (fixed in 2.03.01-1)
trixie: resolved (fixed in 2.03.01-1)
Red Hat
nasm: listing module buffer overflow
vendor_redhat·CVSS 6.8
CVE-2008-7177 [MEDIUM] nasm: listing module buffer overflow
nasm: listing module buffer overflow
Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerability than CVE-2008-2719.
Statement: Not vulnerable. This issue did not affect the versions of nasm as shipped with Red Hat Enterprise Linux 3, 4, or 5.
No detection rules found.
No public exploits indexed.
http://secunia.com/advisories/30836http://sourceforge.net/project/shownotes.php?release_id=607497http://www.securityfocus.com/bid/29955http://www.securitytracker.com/id?1020378http://www.vupen.com/english/advisories/2008/1939https://bugzilla.redhat.com/show_bug.cgi?id=452800https://exchange.xforce.ibmcloud.com/vulnerabilities/43441https://www.redhat.com/archives/fedora-package-announce/2008-June/msg01000.htmlhttp://secunia.com/advisories/30836http://sourceforge.net/project/shownotes.php?release_id=607497http://www.securityfocus.com/bid/29955http://www.securitytracker.com/id?1020378http://www.vupen.com/english/advisories/2008/1939https://bugzilla.redhat.com/show_bug.cgi?id=452800https://exchange.xforce.ibmcloud.com/vulnerabilities/43441https://www.redhat.com/archives/fedora-package-announce/2008-June/msg01000.html
2009-09-08
Published