CVE-2020-24241: Use After Free
Published Aug 25, 2020
·Updated
In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saawbytes in nasmlib/saa.c.
Affected Software
1 affected component
nasm Netwide Assembler=2.15-rc10
Event History
Aug 25, 2020
CVE Published
via MITRE·01:51 PM
Data Sourced
via MITRE·01:51 PM
Description
Sep 3, 2025
Data Sourced
via Microsoft·09:30 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-24241.
2
What is the severity of CVE-2020-24241?
The severity of CVE-2020-24241 is medium with a severity value of 5.5.
3
What is the affected software?
The affected software is Nasm Netwide Assembler version 2.15-rc10.
4
What is the CWE number for CVE-2020-24241?
The CWE number for CVE-2020-24241 is CWE-416.
5
How can I fix the vulnerability?
To fix the vulnerability, update the Netwide Assembler (NASM) software to version 2.15-rc11 or later.