First published: Tue Jan 29 2019(Updated: )
A buffer over-read exists in the function crc64ib in crc64.c in nasmlib in Netwide Assembler (NASM) 2.14rc16. A crafted asm input can cause segmentation faults, leading to denial-of-service.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nasm Netwide Assembler | =2.14-rc16 | |
=2.14-rc16 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-7147 is a vulnerability in Netwide Assembler (NASM) 2.14rc16 that allows a crafted asm input to cause segmentation faults, leading to denial-of-service.
CVE-2019-7147 has a severity score of 5.5, which is categorized as medium.
If you are using Netwide Assembler (NASM) version 2.14rc16, a crafted asm input can cause segmentation faults, resulting in denial-of-service.
To fix CVE-2019-7147, it is recommended to update Netwide Assembler (NASM) to a version that is not affected by the vulnerability.
You can find more information about CVE-2019-7147 at the following reference: https://bugzilla.nasm.us/show_bug.cgi?id=3392544