High severity7.8NVD Advisory· Published Nov 12, 2018· Updated Jun 17, 2026
CVE-2018-19215
CVE-2018-19215
Description
Netwide Assembler (NASM) 2.14rc16 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for the special cases of the % and $ and ! characters.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- cpe:2.3:a:nasm:netwide_assembler:12.14:rc16:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
- Range: = 2.14rc16
- osv-coords4 versionspkg:rpm/opensuse/nasm&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/nasm&distro=openSUSE%20Leap%2015.2pkg:rpm/suse/nasm&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP1pkg:rpm/suse/nasm&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP2
< 2.14.02-lp151.3.3.1+ 3 more
- (no CPE)range: < 2.14.02-lp151.3.3.1
- (no CPE)range: < 2.14.02-lp152.4.3.1
- (no CPE)range: < 2.14.02-3.4.1
- (no CPE)range: < 2.14.02-3.4.1
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.