Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-10254

Опубликовано: 21 апр. 2018
Источник: debian

Описание

Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file. Remote attackers could leverage this vulnerability to cause a denial of service or possibly have unspecified other impact via a crafted ELF file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nasmfixed2.14-1package
nasmno-dsastretchpackage
nasmno-dsajessiepackage
nasmno-dsawheezypackage

Примечания

  • https://sourceforge.net/p/nasm/bugs/561/

  • https://github.com/netwide-assembler/nasm/commit/55d09bbf6f7087339277b1e3b17c134b2afb2510

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 8 лет назад

Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file. Remote attackers could leverage this vulnerability to cause a denial of service or possibly have unspecified other impact via a crafted ELF file.

CVSS3: 3.3
redhat
почти 8 лет назад

Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file. Remote attackers could leverage this vulnerability to cause a denial of service or possibly have unspecified other impact via a crafted ELF file.

CVSS3: 7.8
nvd
почти 8 лет назад

Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file. Remote attackers could leverage this vulnerability to cause a denial of service or possibly have unspecified other impact via a crafted ELF file.

CVSS3: 7.8
github
больше 3 лет назад

Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file. Remote attackers could leverage this vulnerability to cause a denial of service or possibly have unspecified other impact via a crafted ELF file.

suse-cvrf
больше 5 лет назад

Security update for nasm