Debian Nasm vulnerabilities
46 known vulnerabilities affecting debian/nasm.
Total CVEs
46
CISA KEV
0
Public exploits
3
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH6MEDIUM11LOW26
Vulnerabilities
Page 3 of 3
CVE-2019-14248P4LOWCVSS 5.5fixed in nasm 2.15.02-1 (bookworm)2019
CVE-2019-14248 [MEDIUM] CVE-2019-14248: nasm - In libnasm.a in Netwide Assembler (NASM) 2.14.xx, asm/pragma.c allows a NULL poi...
In libnasm.a in Netwide Assembler (NASM) 2.14.xx, asm/pragma.c allows a NULL pointer dereference in process_pragma, search_pragma_list, and nasm_set_limit when "%pragma limit" is mishandled.
Scope: local
bookworm: resolved (fixed in 2.15.02-1)
bullseye: resolved (fixed in 2.15.02-1)
forky: resolved (fixed in 2.15.02-1)
sid: resolved (fixed in 2.15.02-1)
trixie: resol
debian
CVE-2020-24241P4LOWCVSS 5.5fixed in nasm 2.15.04-1 (bookworm)2020
CVE-2020-24241 [MEDIUM] CVE-2020-24241: nasm - In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes...
In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes in nasmlib/saa.c.
Scope: local
bookworm: resolved (fixed in 2.15.04-1)
bullseye: resolved (fixed in 2.15.04-1)
forky: resolved (fixed in 2.15.04-1)
sid: resolved (fixed in 2.15.04-1)
trixie: resolved (fixed in 2.15.04-1)
debian
CVE-2018-19209P4LOWCVSS 5.5fixed in nasm 2.14-1 (bookworm)2018
CVE-2018-19209 [MEDIUM] CVE-2018-19209: nasm - Netwide Assembler (NASM) 2.14rc15 has a NULL pointer dereference in the function...
Netwide Assembler (NASM) 2.14rc15 has a NULL pointer dereference in the function find_label in asm/labels.c that will lead to a DoS attack.
Scope: local
bookworm: resolved (fixed in 2.14-1)
bullseye: resolved (fixed in 2.14-1)
forky: resolved (fixed in 2.14-1)
sid: resolved (fixed in 2.14-1)
trixie: resolved (fixed in 2.14-1)
debian
CVE-2020-24242P4LOWCVSS 5.5fixed in nasm 2.15.04-1 (bookworm)2020
CVE-2020-24242 [MEDIUM] CVE-2020-24242: nasm - In Netwide Assembler (NASM) 2.15rc10, SEGV can be triggered in tok_text in asm/p...
In Netwide Assembler (NASM) 2.15rc10, SEGV can be triggered in tok_text in asm/preproc.c by accessing READ memory.
Scope: local
bookworm: resolved (fixed in 2.15.04-1)
bullseye: resolved (fixed in 2.15.04-1)
forky: resolved (fixed in 2.15.04-1)
sid: resolved (fixed in 2.15.04-1)
trixie: resolved (fixed in 2.15.04-1)
debian
CVE-2018-10316P4LOWCVSS 5.5fixed in nasm 2.14-1 (bookworm)2018
CVE-2018-10316 [MEDIUM] CVE-2018-10316: nasm - Netwide Assembler (NASM) 2.14rc0 has an endless while loop in the assemble_file ...
Netwide Assembler (NASM) 2.14rc0 has an endless while loop in the assemble_file function of asm/nasm.c because of a globallineno integer overflow.
Scope: local
bookworm: resolved (fixed in 2.14-1)
bullseye: resolved (fixed in 2.14-1)
forky: resolved (fixed in 2.14-1)
sid: resolved (fixed in 2.14-1)
trixie: resolved (fixed in 2.14-1)
debian
CVE-2018-16382P4LOWCVSS 5.5fixed in nasm 2.14-1 (bookworm)2018
CVE-2018-16382 [MEDIUM] CVE-2018-16382: nasm - Netwide Assembler (NASM) 2.14rc15 has a buffer over-read in x86/regflags.c.
Netwide Assembler (NASM) 2.14rc15 has a buffer over-read in x86/regflags.c.
Scope: local
bookworm: resolved (fixed in 2.14-1)
bullseye: resolved (fixed in 2.14-1)
forky: resolved (fixed in 2.14-1)
sid: resolved (fixed in 2.14-1)
trixie: resolved (fixed in 2.14-1)
debian
← Previous3 / 3