Msrc Cbl2 Nasm 2.16-1 On Cbl Mariner 2.0 vulnerabilities
8 known vulnerabilities affecting msrc/cbl2_nasm_2.16-1_on_cbl_mariner_2.0.
Total CVEs
8
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM6LOW1
Vulnerabilities
Page 1 of 1
CVE-2025-8846MEDIUMCVSS 5.32025-08-12
CVE-2025-8846 [MEDIUM] CWE-121 NASM Netwide Assember parser.c parse_line stack-based overflow
NASM Netwide Assember parser.c parse_line stack-based overflow
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source librari
msrc
CVE-2025-8842MEDIUMCVSS 5.32025-08-12
CVE-2025-8842 [MEDIUM] CWE-416 NASM Netwide Assember preproc.c do_directive use after free
NASM Netwide Assember preproc.c do_directive use after free
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries wit
msrc
CVE-2025-8845MEDIUMCVSS 5.32025-08-12
CVE-2025-8845 [MEDIUM] CWE-121 NASM Netwide Assember nasm.c assemble_file stack-based overflow
NASM Netwide Assember nasm.c assemble_file stack-based overflow
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libra
msrc
CVE-2025-8843MEDIUMCVSS 5.32025-08-12
CVE-2025-8843 [MEDIUM] CWE-122 NASM Netwide Assember outmacho.c macho_no_dead_strip heap-based overflow
NASM Netwide Assember outmacho.c macho_no_dead_strip heap-based overflow
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the
msrc
CVE-2025-8844LOWCVSS 3.32025-08-12
CVE-2025-8844 [MEDIUM] CWE-476 NASM Netwide Assember preproc.c parse_smacro_template null pointer dereference
NASM Netwide Assember preproc.c parse_smacro_template null pointer dereference
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure ver
msrc
CVE-2022-44370HIGHCVSS 7.82023-03-14
CVE-2022-44370 [HIGH] CWE-787 NASM v2.16 was discovered to contain a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856
NASM v2.16 was discovered to contain a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment t
msrc
CVE-2022-46456MEDIUMCVSS 6.12023-01-10
CVE-2022-46456 [MEDIUM] CWE-120 NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c.
NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is
msrc
CVE-2022-46457MEDIUMCVSS 5.52023-01-10
CVE-2022-46457 [MEDIUM] NASM v2.16 was discovered to contain a segmentation violation in the component ieee_write_file at /output/outieee.c.
NASM v2.16 was discovered to contain a segmentation violation in the component ieee_write_file at /output/outieee.c.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the comm
msrc