A Segmentation Fault issue discovered in in ieee_segment function in outieee.c in nasm 2.14.03 and 2.15 allows remote attackers to cause a denial of service via crafted assembly file.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade nasm-debuginfoUpgrade nasm-rdoffUpgrade nasm-docUpgrade nasm | Oct 6, 2023 | Aug 22, 2023 |
| Amazon_linux_2023 | — | Upgrade nasm-rdoffUpgrade nasm-debugsourceUpgrade nasm-docUpgrade nasm-debuginfoUpgrade nasmUpgrade nasm-rdoff-debuginfo | Feb 17, 2025 | Dec 8, 2019 |
| Debian | — | Upgrade nasm | Jul 30, 2024 | Aug 22, 2023 |
| Gentoo Linux | — | Upgrade dev-lang/nasm. | Dec 27, 2023 | Aug 22, 2023 |
| Huawei Euleros 2_0_sp10 | — | Upgrade nasm-helpUpgrade nasm | Jan 10, 2024 | Aug 22, 2023 |
| Huawei Euleros 2_0_sp11 | — | Upgrade nasm-helpUpgrade nasm | Jan 10, 2024 | Aug 22, 2023 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Aug 22, 2023 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub