Nasm · Netwide Assembler · CVE-2008-2719
**Name of the Vulnerable Software and Affected Versions**
Netwide Assembler (NASM) version 2.02
**Description**
The issue is caused by an off-by-one error in the ppscan function, located in the preproc.c file, which can lead to a denial of service (crash) and potentially allow the execution of arbitrary code. This is achieved through a crafted file that triggers a stack-based buffer overflow.
**Recommendations**
For Netwide Assembler (NASM) version 2.02, consider updating to a newer version that addresses this issue, as no specific workaround is provided for this version. At the moment, there is no information about a newer version that contains a fix for this vulnerability.