CVE-2019-7147: Medium severity netwide assembler (nasm) vulnerability
A buffer over-read exists in the function crc64ib in crc64.c in nasmlib in Netwide Assembler (NASM) 2.14rc16. A crafted asm input can cause segmentation faults, leading to denial-of-service.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-7147?
CVE-2019-7147 is a vulnerability in Netwide Assembler (NASM) 2.14rc16 that allows a crafted asm input to cause segmentation faults, leading to denial-of-service.
How severe is CVE-2019-7147?
CVE-2019-7147 has a severity score of 5.5, which is categorized as medium.
How can CVE-2019-7147 affect me?
If you are using Netwide Assembler (NASM) version 2.14rc16, a crafted asm input can cause segmentation faults, resulting in denial-of-service.
What is the solution to CVE-2019-7147?
To fix CVE-2019-7147, it is recommended to update Netwide Assembler (NASM) to a version that is not affected by the vulnerability.
Where can I find more information about CVE-2019-7147?
You can find more information about CVE-2019-7147 at the following reference: https://bugzilla.nasm.us/show_bug.cgi?id=3392544