Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-20352

Опубликовано: 14 янв. 2020
Источник: redhat
CVSS3: 7.1

Описание

In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from expand_one_smacro in asm/preproc.c.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5nasmOut of support scope
Red Hat Enterprise Linux 6nasmOut of support scope
Red Hat Enterprise Linux 7nasmFix deferred
Red Hat Enterprise Linux 8nasmFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=1790845nasm: heap-based buffer over-read in set_text_free when called from expand_one_smacro in asm/preproc.c

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.1
ubuntu
около 6 лет назад

In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from expand_one_smacro in asm/preproc.c.

CVSS3: 7.1
nvd
около 6 лет назад

In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from expand_one_smacro in asm/preproc.c.

msrc
5 месяцев назад

In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from expand_one_smacro in asm/preproc.c.

CVSS3: 7.1
debian
около 6 лет назад

In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occ ...

github
больше 3 лет назад

In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from expand_one_smacro in asm/preproc.c.

7.1 High

CVSS3