CVE-2017-17811: Buffer Overflow
In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer overflow that will cause a remote denial of service attack, related to a strcpy in pastetokens in asm/preproc.c, a similar issue to CVE-2017-11111.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-17811?
CVE-2017-17811 is a heap-based buffer overflow vulnerability in Netwide Assembler (NASM) 2.14rc0.
How does CVE-2017-17811 impact my system?
CVE-2017-17811 can cause a remote denial of service attack due to a heap-based buffer overflow in NASM 2.14rc0.
Which software versions are affected by CVE-2017-17811?
NASM versions 2.14-1, 2.15.05-1, and 2.16.01-1, as well as Ubuntu versions 14.04, 16.04, and 17.10 with specific package versions of NASM, are affected.
How can I fix CVE-2017-17811?
To fix CVE-2017-17811, update to NASM version 2.14-1, 2.15.05-1, or 2.16.01-1, or follow the recommended updates for Ubuntu versions 14.04, 16.04, and 17.10.
Where can I find more information about CVE-2017-17811?
You can find more information about CVE-2017-17811 in the references provided: [Bugzilla](https://bugzilla.nasm.us/show_bug.cgi?id=3392432), [Ubuntu Security Notice](https://usn.ubuntu.com/3694-1/), [Launchpad CVE](https://launchpad.net/bugs/cve/CVE-2017-17811).