Перейти к содержимому
Noroxi

Записи NASM

75 опубликованных записей вендора nasm.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
3
С записью об исправлении
62,7 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 17
  2. 18
  3. 19
  4. 20
  5. 21
  6. 22
  7. 23
  8. 25
  9. 26

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

75 записей
  • CVE-2004-1287
    45В плане

    Buffer overflow in the error function in preproc.c for NASM 0.98.38 1.2 allows attackers to execute arbitrary code via a crafted asm file, a

    КритическаяCVSS 10,0Proof of conceptEPSS 18 %

    nasm · netwide assembler10 янв. 2005 г.

  • CVE-2020-24978
    39Наблюдать

    In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    nasm · netwide assembler3 сент. 2020 г.

  • CVE-2008-7177
    38Наблюдать

    Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerab

    КритическаяCVSS 9,3Эксплойта нетEPSS 2 %

    nasm · netwide assembler8 сент. 2009 г.

  • CVE-2026-6068
    38Наблюдать

    NASM contains a heap use after free vulnerability in response file (-@) processing where a dangling pointer to freed memory is stored in the

    КритическаяCVSS 9,6Эксплойта нетEPSS 0 %

    nasm · netwide assembler10 апр. 2026 г.

  • CVE-2017-10686
    32Наблюдать

    In Netwide Assembler (NASM) 2.14rc0, there are multiple heap use after free vulnerabilities in the tool nasm.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %

    nasm · netwide assembler29 июн. 2017 г.

  • CVE-2017-11111
    32Наблюдать

    In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and applicat

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    nasm · netwide assembler8 июл. 2017 г.

  • CVE-2017-17818
    31Наблюдать

    In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer over-read that will cause a remote denial of service attack, related to a

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    nasm · netwide assembler20 дек. 2017 г.

  • CVE-2018-10254
    31Наблюдать

    Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    nasm · netwide assembler21 апр. 2018 г.

  • CVE-2018-19214
    31Наблюдать

    Netwide Assembler (NASM) 2.14rc15 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for insufficient input.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    nasm · netwide assembler12 нояб. 2018 г.

  • CVE-2018-19216
    31Наблюдать

    Netwide Assembler (NASM) before 2.13.02 has a use-after-free in detoken at asm/preproc.c.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    nasm · netwide assembler12 нояб. 2018 г.

  • CVE-2018-19215
    31Наблюдать

    Netwide Assembler (NASM) 2.14rc16 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for the special cases of the % an

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    nasm · netwide assembler12 нояб. 2018 г.

  • CVE-2019-8343
    31Наблюдать

    In Netwide Assembler (NASM) 2.14.02, there is a use-after-free in paste_tokens in asm/preproc.c.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    nasm · netwide assembler15 февр. 2019 г.

  • CVE-2022-44370
    31Наблюдать

    NASM v2.16 was discovered to contain a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    nasm · netwide assembler29 мар. 2023 г.

  • CVE-2018-8883
    31Наблюдать

    Netwide Assembler (NASM) 2.13.02rc2 has a buffer over-read in the parse_line function in asm/parser.c via uncontrolled access to nasm_reg_fl

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    nasm · netwide assembler20 мар. 2018 г.

  • CVE-2018-8882
    31Наблюдать

    Netwide Assembler (NASM) 2.13.02rc2 has a stack-based buffer under-read in the function ieee_shr in asm/float.c via a large shift value.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    nasm · netwide assembler20 мар. 2018 г.

  • CVE-2023-31722
    31Наблюдать

    There exists a heap buffer overflow in nasm 2.16.02rc1 (GitHub commit: b952891).

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    nasm · netwide assembler17 мая 2023 г.

  • CVE-2008-2719
    30Наблюдать

    Off-by-one error in the ppscan function (preproc.c) in Netwide Assembler (NASM) 2.02 allows context-dependent attackers to cause a denial of

    СредняяCVSS 6,8Proof of conceptEPSS 10 %

    nasm · netwide assembler16 июн. 2008 г.

  • CVE-2026-6069
    30Наблюдать

    NASM’s disasm() function contains a stack based buffer overflow when formatting disassembly output, allowing an attacker triggered out-of-bo

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    nasm · netwide assembler10 апр. 2026 г.

  • CVE-2018-8881
    29Наблюдать

    Netwide Assembler (NASM) 2.13.02rc2 has a heap-based buffer over-read in the function tokenize in asm/preproc.c, related to an unterminated

    ВысокаяCVSS 7,3Эксплойта нетEPSS 1 %

    nasm · netwide assembler20 мар. 2018 г.

  • CVE-2019-20352
    28Наблюдать

    In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from expand

    ВысокаяCVSS 7,1Эксплойта нетEPSS 1 %

    nasm · netwide assembler6 янв. 2020 г.

  • CVE-2018-16517
    24Наблюдать

    asm/labels.c in Netwide Assembler (NASM) is prone to NULL Pointer Dereference, which allows the attacker to cause a denial of service via a

    СредняяCVSS 5,5Proof of conceptEPSS 5 %

    nasm · netwide assembler6 сент. 2018 г.

  • CVE-2022-46456
    24Наблюдать

    NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c.

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    nasm · netwide assembler4 янв. 2023 г.

  • CVE-2017-17815
    22Наблюдать

    In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in is_mmacro() in asm/preproc.c that will cause a remote denial of s

    СредняяCVSS 5,5Эксплойта нетEPSS 1 %

    nasm · netwide assembler20 дек. 2017 г.

  • CVE-2017-17810
    22Наблюдать

    In Netwide Assembler (NASM) 2.14rc0, there is a "SEGV on unknown address" that will cause a remote denial of service attack, because asm/pre

    СредняяCVSS 5,5Эксплойта нетEPSS 1 %

    nasm · netwide assembler20 дек. 2017 г.

  • CVE-2017-17812
    22Наблюдать

    In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer over-read in the function detoken() in asm/preproc.c that will cause a rem

    СредняяCVSS 5,5Эксплойта нетEPSS 1 %

    nasm · netwide assembler20 дек. 2017 г.