Netwide Assembler
by Nasm
Source repositories
CVEs (75)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-38668 | Med | 0.36 | 5.5 | 0.00 | Aug 22, 2023 | Stack-based buffer over-read in disasm in nasm 2.16 allows attackers to cause a denial of service (crash). | ||
| CVE-2023-38667 | Med | 0.36 | 5.5 | 0.00 | Aug 22, 2023 | Stack-based buffer over-read in function disasm in nasm 2.16 allows attackers to cause a denial of service. | ||
| CVE-2023-38665 | Med | 0.36 | 5.5 | 0.00 | Aug 22, 2023 | Null pointer dereference in ieee_write_file in nasm 2.16rc0 allows attackers to cause a denial of service (crash). | ||
| CVE-2022-29654 | Med | 0.36 | 5.5 | 0.01 | Aug 22, 2023 | Buffer overflow vulnerability in quote_for_pmake in asm/nasm.c in nasm before 2.15.05 allows attackers to cause a denial of service via crafted file. | ||
| CVE-2020-21687 | Med | 0.36 | 5.5 | 0.00 | Aug 22, 2023 | Buffer Overflow vulnerability in scan function in stdscan.c in nasm 2.15rc0 allows remote attackers to cause a denial of service via crafted asm file. | ||
| CVE-2020-21686 | Med | 0.36 | 5.5 | 0.00 | Aug 22, 2023 | A stack-use-after-scope issue discovered in expand_mmac_params function in preproc.c in nasm before 2.15.04 allows remote attackers to cause a denial of service via crafted asm file. | ||
| CVE-2020-21685 | Med | 0.36 | 5.5 | 0.00 | Aug 22, 2023 | Buffer Overflow vulnerability in hash_findi function in hashtbl.c in nasm 2.15rc0 allows remote attackers to cause a denial of service via crafted asm file. | ||
| CVE-2020-21528 | Med | 0.36 | 5.5 | 0.00 | Aug 22, 2023 | A Segmentation Fault issue discovered in in ieee_segment function in outieee.c in nasm 2.14.03 and 2.15 allows remote attackers to cause a denial of service via crafted assembly file. | ||
| CVE-2020-18780 | Med | 0.36 | 5.5 | 0.00 | Aug 22, 2023 | A Use After Free vulnerability in function new_Token in asm/preproc.c in nasm 2.14.02 allows attackers to cause a denial of service via crafted nasm command. | ||
| CVE-2022-44369 | Med | 0.36 | 5.5 | 0.00 | Mar 29, 2023 | NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference via output/outaout.c. | ||
| CVE-2022-44368 | Med | 0.36 | 5.5 | 0.00 | Mar 29, 2023 | NASM v2.16 was discovered to contain a null pointer deference in the NASM component | ||
| CVE-2022-46457 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | NASM v2.16 was discovered to contain a segmentation violation in the component ieee_write_file at /output/outieee.c. | ||
| CVE-2022-41420 | Med | 0.36 | 5.5 | 0.00 | Oct 3, 2022 | nasm v2.16 was discovered to contain a stack overflow in the Ndisasm component | ||
| CVE-2021-33452 | Med | 0.36 | 5.5 | 0.00 | Jul 26, 2022 | An issue was discovered in NASM version 2.16rc0. There are memory leaks in nasm_malloc() in nasmlib/alloc.c. | ||
| CVE-2021-33450 | Med | 0.36 | 5.5 | 0.00 | Jul 26, 2022 | An issue was discovered in NASM version 2.16rc0. There are memory leaks in nasm_calloc() in nasmlib/alloc.c. | ||
| CVE-2021-45257 | Med | 0.36 | 5.5 | 0.01 | Dec 22, 2021 | An infinite loop vulnerability exists in nasm 2.16rc0 via the gpaste_tokens function. | ||
| CVE-2021-45256 | Med | 0.36 | 5.5 | 0.01 | Dec 22, 2021 | A Null Pointer Dereference vulnerability existfs in nasm 2.16rc0 via asm/preproc.c. | ||
| CVE-2020-24242 | Med | 0.36 | 5.5 | 0.01 | Aug 25, 2020 | In Netwide Assembler (NASM) 2.15rc10, SEGV can be triggered in tok_text in asm/preproc.c by accessing READ memory. | ||
| CVE-2020-24241 | Med | 0.36 | 5.5 | 0.01 | Aug 25, 2020 | In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes in nasmlib/saa.c. | ||
| CVE-2019-20334 | Med | 0.36 | 5.5 | 0.01 | Jan 4, 2020 | In Netwide Assembler (NASM) 2.14.02, stack consumption occurs in expr# functions in asm/eval.c. This potentially affects the relationships among expr0, expr1, expr2, expr3, expr4, expr5, and expr6 (and stdscan in asm/stdscan.c). This is similar to CVE-2019-6290 and CVE-2019-6291. |
- risk 0.36cvss 5.5epss 0.00
Stack-based buffer over-read in disasm in nasm 2.16 allows attackers to cause a denial of service (crash).
- risk 0.36cvss 5.5epss 0.00
Stack-based buffer over-read in function disasm in nasm 2.16 allows attackers to cause a denial of service.
- risk 0.36cvss 5.5epss 0.00
Null pointer dereference in ieee_write_file in nasm 2.16rc0 allows attackers to cause a denial of service (crash).
- risk 0.36cvss 5.5epss 0.01
Buffer overflow vulnerability in quote_for_pmake in asm/nasm.c in nasm before 2.15.05 allows attackers to cause a denial of service via crafted file.
- risk 0.36cvss 5.5epss 0.00
Buffer Overflow vulnerability in scan function in stdscan.c in nasm 2.15rc0 allows remote attackers to cause a denial of service via crafted asm file.
- risk 0.36cvss 5.5epss 0.00
A stack-use-after-scope issue discovered in expand_mmac_params function in preproc.c in nasm before 2.15.04 allows remote attackers to cause a denial of service via crafted asm file.
- risk 0.36cvss 5.5epss 0.00
Buffer Overflow vulnerability in hash_findi function in hashtbl.c in nasm 2.15rc0 allows remote attackers to cause a denial of service via crafted asm file.
- risk 0.36cvss 5.5epss 0.00
A Segmentation Fault issue discovered in in ieee_segment function in outieee.c in nasm 2.14.03 and 2.15 allows remote attackers to cause a denial of service via crafted assembly file.
- risk 0.36cvss 5.5epss 0.00
A Use After Free vulnerability in function new_Token in asm/preproc.c in nasm 2.14.02 allows attackers to cause a denial of service via crafted nasm command.
- risk 0.36cvss 5.5epss 0.00
NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference via output/outaout.c.
- risk 0.36cvss 5.5epss 0.00
NASM v2.16 was discovered to contain a null pointer deference in the NASM component
- risk 0.36cvss 5.5epss 0.00
NASM v2.16 was discovered to contain a segmentation violation in the component ieee_write_file at /output/outieee.c.
- risk 0.36cvss 5.5epss 0.00
nasm v2.16 was discovered to contain a stack overflow in the Ndisasm component
- risk 0.36cvss 5.5epss 0.00
An issue was discovered in NASM version 2.16rc0. There are memory leaks in nasm_malloc() in nasmlib/alloc.c.
- risk 0.36cvss 5.5epss 0.00
An issue was discovered in NASM version 2.16rc0. There are memory leaks in nasm_calloc() in nasmlib/alloc.c.
- risk 0.36cvss 5.5epss 0.01
An infinite loop vulnerability exists in nasm 2.16rc0 via the gpaste_tokens function.
- risk 0.36cvss 5.5epss 0.01
A Null Pointer Dereference vulnerability existfs in nasm 2.16rc0 via asm/preproc.c.
- risk 0.36cvss 5.5epss 0.01
In Netwide Assembler (NASM) 2.15rc10, SEGV can be triggered in tok_text in asm/preproc.c by accessing READ memory.
- risk 0.36cvss 5.5epss 0.01
In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes in nasmlib/saa.c.
- risk 0.36cvss 5.5epss 0.01
In Netwide Assembler (NASM) 2.14.02, stack consumption occurs in expr# functions in asm/eval.c. This potentially affects the relationships among expr0, expr1, expr2, expr3, expr4, expr5, and expr6 (and stdscan in asm/stdscan.c). This is similar to CVE-2019-6290 and CVE-2019-6291.
Page 2 of 4