NASM v2.16 was discovered to contain a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade nasm-rdoffUpgrade nasm-debuginfoUpgrade nasm-docUpgrade nasm | May 3, 2023 | Mar 29, 2023 |
| Amazon_linux | — | Upgrade nasm | May 4, 2023 | Mar 29, 2023 |
| Amazon_linux_2023 | — | Upgrade nasm-rdoffUpgrade nasm-debuginfoUpgrade nasmUpgrade nasm-docUpgrade nasm-debugsourceUpgrade nasm-rdoff-debuginfo | Feb 17, 2025 | Oct 2, 2022 |
| Debian | — | Upgrade nasm | Jul 30, 2024 | Mar 29, 2023 |
| Gentoo Linux | — | Upgrade dev-lang/nasm. | Dec 27, 2023 | Mar 29, 2023 |
| Huawei Euleros 2_0_sp10 | — | Upgrade nasmUpgrade nasm-help | Jul 18, 2023 | Mar 29, 2023 |
| Huawei Euleros 2_0_sp11 | — | Upgrade nasmUpgrade nasm-help | Jan 10, 2024 | Mar 29, 2023 |
| Redhat_linux | — | No solution exists | Jul 17, 2026 | Oct 2, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub