Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-24978

Опубликовано: 04 сент. 2020
Источник: redhat
CVSS3: 5.5

Описание

In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c. This is fixed in commit 8806c3ca007b84accac21dd88b900fb03614ceb7.

Отчет

This flaw does not affect nasm as shipped in Red Hat Enterprise Linux 7 or 8 as the vulnerable code was committed in a newer version of nasm.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5nasmOut of support scope
Red Hat Enterprise Linux 6nasmOut of support scope
Red Hat Enterprise Linux 7nasmNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=1877786nasm: double-free vulnerability in pp_tokline asm/preproc.c

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 6 лет назад

In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c. This is fixed in commit 8806c3ca007b84accac21dd88b900fb03614ceb7.

CVSS3: 9.8
nvd
около 6 лет назад

In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c. This is fixed in commit 8806c3ca007b84accac21dd88b900fb03614ceb7.

msrc
около 1 года назад

In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c. This is fixed in commit 8806c3ca007b84accac21dd88b900fb03614ceb7.

CVSS3: 9.8
debian
около 6 лет назад

In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline ...

CVSS3: 9.8
github
больше 4 лет назад

In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c. This is fixed in commit 8806c3ca007b84accac21dd88b900fb03614ceb7.

5.5 Medium

CVSS3

Уязвимость CVE-2020-24978