Unrated severityNVD Advisory· Published Nov 12, 2018· Updated Aug 5, 2024
CVE-2018-19214
CVE-2018-19214
Description
Netwide Assembler (NASM) 2.14rc15 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for insufficient input.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- osv-coords4 versionspkg:rpm/opensuse/nasm&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/nasm&distro=openSUSE%20Leap%2015.2pkg:rpm/suse/nasm&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP1pkg:rpm/suse/nasm&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP2
< 2.14.02-lp151.3.3.1+ 3 more
- (no CPE)range: < 2.14.02-lp151.3.3.1
- (no CPE)range: < 2.14.02-lp152.4.3.1
- (no CPE)range: < 2.14.02-3.4.1
- (no CPE)range: < 2.14.02-3.4.1
Patches
Vulnerability mechanics
References
4- lists.opensuse.org/opensuse-security-announce/2020-07/msg00015.htmlmitrevendor-advisoryx_refsource_SUSE
- lists.opensuse.org/opensuse-security-announce/2020-07/msg00017.htmlmitrevendor-advisoryx_refsource_SUSE
- bugzilla.nasm.us/show_bug.cgimitrex_refsource_MISC
- repo.or.cz/nasm.git/commit/661f723d39e03ca6eb05d7376a43ca33db478354mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.