Msrc Cbl2 Nasm 2.16-2 On Cbl Mariner 2.0 vulnerabilities

5 known vulnerabilities affecting msrc/cbl2_nasm_2.16-2_on_cbl_mariner_2.0.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM4LOW1

Vulnerabilities

Page 1 of 1
CVE-2025-8846MEDIUMCVSS 5.32025-08-12
CVE-2025-8846 [MEDIUM] CWE-121 NASM Netwide Assember parser.c parse_line stack-based overflow NASM Netwide Assember parser.c parse_line stack-based overflow FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source librari
msrc
CVE-2025-8842MEDIUMCVSS 5.32025-08-12
CVE-2025-8842 [MEDIUM] CWE-416 NASM Netwide Assember preproc.c do_directive use after free NASM Netwide Assember preproc.c do_directive use after free FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries wit
msrc
CVE-2025-8845MEDIUMCVSS 5.32025-08-12
CVE-2025-8845 [MEDIUM] CWE-121 NASM Netwide Assember nasm.c assemble_file stack-based overflow NASM Netwide Assember nasm.c assemble_file stack-based overflow FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libra
msrc
CVE-2025-8843MEDIUMCVSS 5.32025-08-12
CVE-2025-8843 [MEDIUM] CWE-122 NASM Netwide Assember outmacho.c macho_no_dead_strip heap-based overflow NASM Netwide Assember outmacho.c macho_no_dead_strip heap-based overflow FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the
msrc
CVE-2025-8844LOWCVSS 3.32025-08-12
CVE-2025-8844 [MEDIUM] CWE-476 NASM Netwide Assember preproc.c parse_smacro_template null pointer dereference NASM Netwide Assember preproc.c parse_smacro_template null pointer dereference FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure ver
msrc