Yasm · Yasm · CVE-2023-49557
**Name of the Vulnerable Software and Affected Versions**
YASM version 1.3.0.86.g9def
**Description**
The issue is related to the `yasm section bcs first` function in the libyasm/section.c component, which allows a remote attacker to cause a denial of service due to uncontrolled resource consumption. This can be exploited by a remote attacker to disrupt service.
**Recommendations**
For YASM version 1.3.0.86.g9def, consider disabling the `yasm section bcs first` function as a temporary workaround until a patch is available. Restrict access to the libyasm/section.c component to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.