CVE-2018-10316: Integer Overflow
Netwide Assembler (NASM) 2.14rc0 has an endless while loop in the assemblefile function of asm/nasm.c because of a globallineno integer overflow.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-10316?
The severity of CVE-2018-10316 is medium with a severity value of 5.5.
What is the affected software for CVE-2018-10316?
The affected software for CVE-2018-10316 is Netwide Assembler (NASM) 2.14rc0.
What is the vulnerability description of CVE-2018-10316?
CVE-2018-10316 is a vulnerability in Netwide Assembler (NASM) 2.14rc0 that has an endless while loop in the assemble_file function of asm/nasm.c.
How can I fix CVE-2018-10316?
To fix CVE-2018-10316, update Netwide Assembler (NASM) to a version that is not affected by this vulnerability.
Is there any additional reference information for CVE-2018-10316?
Yes, you can find additional reference information for CVE-2018-10316 at the following links: [Reference 1](http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00015.html), [Reference 2](http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00017.html), [Reference 3](https://bugzilla.nasm.us/show_bug.cgi?id=3392474).