CVE-2021-33452: Medium severity nasm Netwide Assembler vulnerability
Published Jul 26, 2022
·Updated
An issue was discovered in NASM version 2.16rc0. There are memory leaks in nasmmalloc() in nasmlib/alloc.c.
Affected Software
2 affected components
nasm Netwide Assembler=2.16-rc0
debian/nasm<=2.15.05-1, <=2.16.01-1, <=2.16.03-1, <=3.01-1
Event History
Jul 26, 2022
CVE Published
via MITRE·12:36 PM
Data Sourced
via MITRE·12:36 PM
Description
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
May 13, 2026
Data Sourced
via Launchpad·04:06 AM
Description
Data Sourced
via Debian·04:06 AM
DescriptionAffected Software
May 14, 2026
Data Sourced
via Ubuntu·04:06 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-33452?
The severity of CVE-2021-33452 is medium with a CVSS score of 5.5.
2
What is the affected software of CVE-2021-33452?
The affected software of CVE-2021-33452 is Nasm Netwide Assembler version 2.16rc0.
3
How can I fix the memory leaks in nasm_malloc()?
To fix the memory leaks in nasm_malloc() in NASM, you should update to a version that does not have this vulnerability.
4
Where can I find more information about CVE-2021-33452?
You can find more information about CVE-2021-33452 in the following references: [link1](https://bugzilla.nasm.us/show_bug.cgi?id=3392757), [link2](https://gist.github.com/Clingto/bb632c0c463f4b2c97e4f65f751c5e6d).
5
What is the CWE ID of CVE-2021-33452?
The CWE ID of CVE-2021-33452 is 401.