PT-2019-18977 · Netwide+2 · Netwide Assembler+2

Published

2019-02-15

·

Updated

2024-12-08

·

CVE-2019-8343

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Netwide Assembler (NASM) version 2.14.02
Description The issue is related to a use-after-free in the paste tokens function located in asm/preproc.c. This indicates a memory management problem where memory is accessed after it has been freed, potentially leading to unexpected behavior or crashes.
Recommendations For Netwide Assembler (NASM) version 2.14.02, consider updating to a newer version that addresses this issue, as using a version with a use-after-free vulnerability can lead to instability or potential security risks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use After Free

Weakness Enumeration

Related Identifiers

ALT-PU-2020-2243
ALT-PU-2024-16552
CVE-2019-8343

Affected Products

Alt Linux
Debian
Netwide Assembler