First published: Wed Aug 25 2021(Updated: )
Buffer Overflow in Netwide Assembler (NASM) v2.15.xx allows attackers to cause a denial of service via 'crc64i' in the component 'nasmlib/crc64'. This issue is different than CVE-2019-7147.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nasm Netwide Assembler | >=2.15<=2.15.05 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-18974 is a buffer overflow vulnerability in Netwide Assembler (NASM) v2.15.xx that allows attackers to cause a denial of service (DoS) by exploiting the 'crc64i' component in 'nasmlib/crc64'.
CVE-2020-18974 is considered to be a medium severity vulnerability with a severity value of 3.3.
Versions of Netwide Assembler (NASM) v2.15 up to v2.15.05 are affected by CVE-2020-18974.
An attacker can exploit CVE-2020-18974 by sending a specially crafted input ('crc64i') to the vulnerable component ('nasmlib/crc64'), causing a buffer overflow and resulting in a denial of service.
Yes, upgrading to a version of Netwide Assembler (NASM) beyond v2.15.05 will fix the vulnerability.