First published: Tue Aug 25 2020(Updated: )
In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes in nasmlib/saa.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nasm Netwide Assembler | =2.15-rc10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-24241.
The severity of CVE-2020-24241 is medium with a severity value of 5.5.
The affected software is Nasm Netwide Assembler version 2.15-rc10.
The CWE number for CVE-2020-24241 is CWE-416.
To fix the vulnerability, update the Netwide Assembler (NASM) software to version 2.15-rc11 or later.