CVE-2020-24242: Medium severity netwide assembler (nasm) vulnerability
Published Aug 25, 2020
·Updated
In Netwide Assembler (NASM) 2.15rc10, SEGV can be triggered in toktext in asm/preproc.c by accessing READ memory.
Affected Software
1 affected component
nasm Netwide Assembler=2.15-rc10
Event History
Aug 25, 2020
CVE Published
via MITRE·01:54 PM
Data Sourced
via MITRE·01:54 PM
Description
Frequently Asked Questions
1
What is CVE-2020-24242?
CVE-2020-24242 is a vulnerability in Netwide Assembler (NASM) 2.15rc10 that can trigger a segmentation fault (SEGV) in tok_text in asm/preproc.c by accessing read memory.
2
How severe is CVE-2020-24242?
CVE-2020-24242 has a severity score of 5.5, which is considered medium severity.
3
How can CVE-2020-24242 be triggered?
CVE-2020-24242 can be triggered by accessing read memory in tok_text in asm/preproc.c in Netwide Assembler (NASM) 2.15rc10.
4
What software is affected by CVE-2020-24242?
Netwide Assembler (NASM) 2.15rc10 is affected by CVE-2020-24242.
5
Where can I find more information about CVE-2020-24242?
More information about CVE-2020-24242 can be found at https://bugzilla.nasm.us/show_bug.cgi?id=3392708.