Записи NASM
75 опубликованных записей вендора nasm.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 62,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-125 Out-of-bounds Read13
- CWE-416 Use After Free13
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer10
- CWE-787 Out-of-bounds Write9
- CWE-476 NULL Pointer Dereference9
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')3
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
75 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
45В плане | CVE-2004-1287Proof of concept | Buffer overflow in the error function in preproc.c for NASM 0.98.38 1.2 allows attackers to execute arbitrary code via a crafted asm file, anasm · netwide assembler · CWE-787 | Критическая10,0 | — | 17,9 % | 10 янв. 2005 г. |
39Наблюдать | CVE-2020-24978Эксплойта нет | In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c.nasm · netwide assembler · CWE-415 | Критическая9,8 | — | 1,4 % | 3 сент. 2020 г. |
38Наблюдать | CVE-2008-7177Эксплойта нет | Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerabnasm · netwide assembler · CWE-119 | Критическая9,3 | — | 2,4 % | 8 сент. 2009 г. |
38Наблюдать | CVE-2026-6068Эксплойта нет | NASM contains a heap use after free vulnerability in response file (-@) processing where a dangling pointer to freed memory is stored in thenasm · netwide assembler · CWE-416 | Критическая9,6 | — | 0,5 % | 10 апр. 2026 г. |
32Наблюдать | CVE-2017-10686Эксплойта нет | In Netwide Assembler (NASM) 2.14rc0, there are multiple heap use after free vulnerabilities in the tool nasm.nasm · netwide assembler · CWE-416 | Высокая7,8 | — | 2,9 % | 29 июн. 2017 г. |
32Наблюдать | CVE-2017-11111Эксплойта нет | In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and applicatnasm · netwide assembler · CWE-119 | Высокая7,8 | — | 1,7 % | 8 июл. 2017 г. |
31Наблюдать | CVE-2017-17818Эксплойта нет | In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer over-read that will cause a remote denial of service attack, related to a nasm · netwide assembler · CWE-125 | Высокая7,5 | — | 2,7 % | 20 дек. 2017 г. |
31Наблюдать | CVE-2018-10254Эксплойта нет | Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file.nasm · netwide assembler · CWE-125 | Высокая7,8 | — | 1,4 % | 21 апр. 2018 г. |
31Наблюдать | CVE-2018-19214Эксплойта нет | Netwide Assembler (NASM) 2.14rc15 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for insufficient input.nasm · netwide assembler · CWE-125 | Высокая7,8 | — | 1,3 % | 12 нояб. 2018 г. |
31Наблюдать | CVE-2018-19216Эксплойта нет | Netwide Assembler (NASM) before 2.13.02 has a use-after-free in detoken at asm/preproc.c.nasm · netwide assembler · CWE-416 | Высокая7,8 | — | 1,3 % | 12 нояб. 2018 г. |
31Наблюдать | CVE-2018-19215Эксплойта нет | Netwide Assembler (NASM) 2.14rc16 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for the special cases of the % annasm · netwide assembler · CWE-125 | Высокая7,8 | — | 1,2 % | 12 нояб. 2018 г. |
31Наблюдать | CVE-2019-8343Эксплойта нет | In Netwide Assembler (NASM) 2.14.02, there is a use-after-free in paste_tokens in asm/preproc.c.nasm · netwide assembler · CWE-416 | Высокая7,8 | — | 1,1 % | 15 февр. 2019 г. |
31Наблюдать | CVE-2022-44370Эксплойта нет | NASM v2.16 was discovered to contain a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856nasm · netwide assembler · CWE-787 | Высокая7,8 | — | 0,4 % | 29 мар. 2023 г. |
31Наблюдать | CVE-2018-8883Эксплойта нет | Netwide Assembler (NASM) 2.13.02rc2 has a buffer over-read in the parse_line function in asm/parser.c via uncontrolled access to nasm_reg_flnasm · netwide assembler · CWE-125 | Высокая7,8 | — | 0,4 % | 20 мар. 2018 г. |
31Наблюдать | CVE-2018-8882Эксплойта нет | Netwide Assembler (NASM) 2.13.02rc2 has a stack-based buffer under-read in the function ieee_shr in asm/float.c via a large shift value.nasm · netwide assembler · CWE-119 | Высокая7,8 | — | 0,4 % | 20 мар. 2018 г. |
31Наблюдать | CVE-2023-31722Эксплойта нет | There exists a heap buffer overflow in nasm 2.16.02rc1 (GitHub commit: b952891).nasm · netwide assembler · CWE-787 | Высокая7,8 | — | 0,4 % | 17 мая 2023 г. |
30Наблюдать | CVE-2008-2719Proof of concept | Off-by-one error in the ppscan function (preproc.c) in Netwide Assembler (NASM) 2.02 allows context-dependent attackers to cause a denial ofnasm · netwide assembler · CWE-189 | Средняя6,8 | — | 10,5 % | 16 июн. 2008 г. |
30Наблюдать | CVE-2026-6069Эксплойта нет | NASM’s disasm() function contains a stack based buffer overflow when formatting disassembly output, allowing an attacker triggered out-of-bonasm · netwide assembler · CWE-787 | Высокая7,5 | — | 0,5 % | 10 апр. 2026 г. |
29Наблюдать | CVE-2018-8881Эксплойта нет | Netwide Assembler (NASM) 2.13.02rc2 has a heap-based buffer over-read in the function tokenize in asm/preproc.c, related to an unterminated nasm · netwide assembler · CWE-125 | Высокая7,3 | — | 1,1 % | 20 мар. 2018 г. |
28Наблюдать | CVE-2019-20352Эксплойта нет | In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from expandnasm · netwide assembler · CWE-125 | Высокая7,1 | — | 0,8 % | 6 янв. 2020 г. |
24Наблюдать | CVE-2018-16517Proof of concept | asm/labels.c in Netwide Assembler (NASM) is prone to NULL Pointer Dereference, which allows the attacker to cause a denial of service via a nasm · netwide assembler · CWE-476 | Средняя5,5 | — | 5,2 % | 6 сент. 2018 г. |
24Наблюдать | CVE-2022-46456Эксплойта нет | NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c.nasm · netwide assembler · CWE-120 | Средняя6,1 | — | 0,4 % | 4 янв. 2023 г. |
22Наблюдать | CVE-2017-17815Эксплойта нет | In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in is_mmacro() in asm/preproc.c that will cause a remote denial of snasm · netwide assembler · CWE-754 | Средняя5,5 | — | 1,5 % | 20 дек. 2017 г. |
22Наблюдать | CVE-2017-17810Эксплойта нет | In Netwide Assembler (NASM) 2.14rc0, there is a "SEGV on unknown address" that will cause a remote denial of service attack, because asm/prenasm · netwide assembler · CWE-20 | Средняя5,5 | — | 1,5 % | 20 дек. 2017 г. |
22Наблюдать | CVE-2017-17812Эксплойта нет | In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer over-read in the function detoken() in asm/preproc.c that will cause a remnasm · netwide assembler · CWE-125 | Средняя5,5 | — | 1,5 % | 20 дек. 2017 г. |
- CVE-2004-128745В плане
Buffer overflow in the error function in preproc.c for NASM 0.98.38 1.2 allows attackers to execute arbitrary code via a crafted asm file, a
КритическаяCVSS 10,0Proof of conceptEPSS 18 %nasm · netwide assembler10 янв. 2005 г.
- CVE-2020-2497839Наблюдать
In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %nasm · netwide assembler3 сент. 2020 г.
- CVE-2008-717738Наблюдать
Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerab
КритическаяCVSS 9,3Эксплойта нетEPSS 2 %nasm · netwide assembler8 сент. 2009 г.
- CVE-2026-606838Наблюдать
NASM contains a heap use after free vulnerability in response file (-@) processing where a dangling pointer to freed memory is stored in the
КритическаяCVSS 9,6Эксплойта нетEPSS 0 %nasm · netwide assembler10 апр. 2026 г.
- CVE-2017-1068632Наблюдать
In Netwide Assembler (NASM) 2.14rc0, there are multiple heap use after free vulnerabilities in the tool nasm.
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %nasm · netwide assembler29 июн. 2017 г.
- CVE-2017-1111132Наблюдать
In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and applicat
ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %nasm · netwide assembler8 июл. 2017 г.
- CVE-2017-1781831Наблюдать
In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer over-read that will cause a remote denial of service attack, related to a
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %nasm · netwide assembler20 дек. 2017 г.
- CVE-2018-1025431Наблюдать
Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %nasm · netwide assembler21 апр. 2018 г.
- CVE-2018-1921431Наблюдать
Netwide Assembler (NASM) 2.14rc15 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for insufficient input.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %nasm · netwide assembler12 нояб. 2018 г.
- CVE-2018-1921631Наблюдать
Netwide Assembler (NASM) before 2.13.02 has a use-after-free in detoken at asm/preproc.c.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %nasm · netwide assembler12 нояб. 2018 г.
- CVE-2018-1921531Наблюдать
Netwide Assembler (NASM) 2.14rc16 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for the special cases of the % an
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %nasm · netwide assembler12 нояб. 2018 г.
- CVE-2019-834331Наблюдать
In Netwide Assembler (NASM) 2.14.02, there is a use-after-free in paste_tokens in asm/preproc.c.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %nasm · netwide assembler15 февр. 2019 г.
- CVE-2022-4437031Наблюдать
NASM v2.16 was discovered to contain a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %nasm · netwide assembler29 мар. 2023 г.
- CVE-2018-888331Наблюдать
Netwide Assembler (NASM) 2.13.02rc2 has a buffer over-read in the parse_line function in asm/parser.c via uncontrolled access to nasm_reg_fl
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %nasm · netwide assembler20 мар. 2018 г.
- CVE-2018-888231Наблюдать
Netwide Assembler (NASM) 2.13.02rc2 has a stack-based buffer under-read in the function ieee_shr in asm/float.c via a large shift value.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %nasm · netwide assembler20 мар. 2018 г.
- CVE-2023-3172231Наблюдать
There exists a heap buffer overflow in nasm 2.16.02rc1 (GitHub commit: b952891).
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %nasm · netwide assembler17 мая 2023 г.
- CVE-2008-271930Наблюдать
Off-by-one error in the ppscan function (preproc.c) in Netwide Assembler (NASM) 2.02 allows context-dependent attackers to cause a denial of
СредняяCVSS 6,8Proof of conceptEPSS 10 %nasm · netwide assembler16 июн. 2008 г.
- CVE-2026-606930Наблюдать
NASM’s disasm() function contains a stack based buffer overflow when formatting disassembly output, allowing an attacker triggered out-of-bo
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %nasm · netwide assembler10 апр. 2026 г.
- CVE-2018-888129Наблюдать
Netwide Assembler (NASM) 2.13.02rc2 has a heap-based buffer over-read in the function tokenize in asm/preproc.c, related to an unterminated
ВысокаяCVSS 7,3Эксплойта нетEPSS 1 %nasm · netwide assembler20 мар. 2018 г.
- CVE-2019-2035228Наблюдать
In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from expand
ВысокаяCVSS 7,1Эксплойта нетEPSS 1 %nasm · netwide assembler6 янв. 2020 г.
- CVE-2018-1651724Наблюдать
asm/labels.c in Netwide Assembler (NASM) is prone to NULL Pointer Dereference, which allows the attacker to cause a denial of service via a
СредняяCVSS 5,5Proof of conceptEPSS 5 %nasm · netwide assembler6 сент. 2018 г.
- CVE-2022-4645624Наблюдать
NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c.
СредняяCVSS 6,1Эксплойта нетEPSS 0 %nasm · netwide assembler4 янв. 2023 г.
- CVE-2017-1781522Наблюдать
In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in is_mmacro() in asm/preproc.c that will cause a remote denial of s
СредняяCVSS 5,5Эксплойта нетEPSS 1 %nasm · netwide assembler20 дек. 2017 г.
- CVE-2017-1781022Наблюдать
In Netwide Assembler (NASM) 2.14rc0, there is a "SEGV on unknown address" that will cause a remote denial of service attack, because asm/pre
СредняяCVSS 5,5Эксплойта нетEPSS 1 %nasm · netwide assembler20 дек. 2017 г.
- CVE-2017-1781222Наблюдать
In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer over-read in the function detoken() in asm/preproc.c that will cause a rem
СредняяCVSS 5,5Эксплойта нетEPSS 1 %nasm · netwide assembler20 дек. 2017 г.