Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-7147

Опубликовано: 01 янв. 2019
Источник: redhat
CVSS3: 5.5

Описание

A buffer over-read exists in the function crc64ib in crc64.c in nasmlib in Netwide Assembler (NASM) 2.14rc16. A crafted asm input can cause segmentation faults, leading to denial-of-service.

Отчет

This issue did not affect the versions of nasm as shipped with Red Hat Enterprise Linux 5, 6, and 7.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5nasmNot affected
Red Hat Enterprise Linux 6nasmNot affected
Red Hat Enterprise Linux 7nasmNot affected
Red Hat Enterprise Linux 8nasmNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1670704nasm: Buffer over-read in function crc64ib in crc64.c resulting in denial of service

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 7 лет назад

A buffer over-read exists in the function crc64ib in crc64.c in nasmlib in Netwide Assembler (NASM) 2.14rc16. A crafted asm input can cause segmentation faults, leading to denial-of-service.

CVSS3: 5.5
nvd
около 7 лет назад

A buffer over-read exists in the function crc64ib in crc64.c in nasmlib in Netwide Assembler (NASM) 2.14rc16. A crafted asm input can cause segmentation faults, leading to denial-of-service.

CVSS3: 5.5
debian
около 7 лет назад

A buffer over-read exists in the function crc64ib in crc64.c in nasmli ...

CVSS3: 5.5
github
больше 3 лет назад

A buffer over-read exists in the function crc64ib in crc64.c in nasmlib in Netwide Assembler (NASM) 2.14rc16. A crafted asm input can cause segmentation faults, leading to denial-of-service.

5.5 Medium

CVSS3