Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-24241

Опубликовано: 28 июл. 2020
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes in nasmlib/saa.c.

Отчет

nasm as shipped with Red Hat Enterprise Linux 7 and 8 are not affected by this flaw because the vulnerable code was introduced in a newer version of nasm.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5nasmOut of support scope
Red Hat Enterprise Linux 6nasmOut of support scope
Red Hat Enterprise Linux 7nasmNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=1872803nasm: use-after-free in saa_wbytes function in nasmlib/saa.c

EPSS

Процентиль: 52%
0.00778
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 6 лет назад

In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes in nasmlib/saa.c.

CVSS3: 5.5
nvd
почти 6 лет назад

In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes in nasmlib/saa.c.

msrc
11 месяцев назад

In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes in nasmlib/saa.c.

CVSS3: 5.5
debian
почти 6 лет назад

In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in ...

github
около 4 лет назад

In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes in nasmlib/saa.c.

EPSS

Процентиль: 52%
0.00778
Низкий

5.5 Medium

CVSS3