Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
nasm netwide assembler 2.14.02 vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2019-20334
In Netwide Assembler (NASM) 2.14.02, stack consumption occurs in expr# functions in asm/eval.c. This potentially affects the relationships among expr0, expr1, expr2, expr3, expr4, expr5, and expr6 (and stdscan in asm/stdscan.c). This is similar to CVE-2019-6290 and CVE-2019-6291.
Nasm Netwide Assembler 2.14.02
NA
CVE-2020-18780
A Use After Free vulnerability in function new_Token in asm/preproc.c in nasm 2.14.02 allows malicious users to cause a denial of service via crafted nasm command.
Nasm Netwide Assembler 2.14.02
605
VMScore
CVE-2019-8343
In Netwide Assembler (NASM) 2.14.02, there is a use-after-free in paste_tokens in asm/preproc.c.
Nasm Netwide Assembler 2.14.02
NA
CVE-2020-21528
A Segmentation Fault issue discovered in in ieee_segment function in outieee.c in nasm 2.14.03 and 2.15 allows remote malicious users to cause a denial of service via crafted assembly file.
Nasm Netwide Assembler 2.15
Nasm Netwide Assembler 2.14.03
385
VMScore
CVE-2019-6290
An infinite recursion issue exists in eval.c in Netwide Assembler (NASM) up to and including 2.14.02. There is a stack exhaustion problem resulting from infinite recursion in the functions expr, rexp, bexpr and cexpr in certain scenarios involving lots of '{' characters...
Nasm Netwide Assembler
385
VMScore
CVE-2019-6291
An issue exists in the function expr6 in eval.c in Netwide Assembler (NASM) up to and including 2.14.02. There is a stack exhaustion problem caused by the expr6 function making recursive calls to itself in certain scenarios involving lots of '!' or '+' or ...
Nasm Netwide Assembler
NA
CVE-2022-46457
NASM v2.16 exists to contain a segmentation violation in the component ieee_write_file at /output/outieee.c.
Nasm Netwide Assembler 2.16
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started