First published: Wed Mar 29 2023(Updated: )
NASM v2.16 was discovered to contain a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nasm Netwide Assembler | <2.16 | |
Nasm Netwide Assembler | =2.16-rc1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-44370 is a vulnerability found in NASM v2.16 that allows for a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856.
NASM v2.16 and NASM v2.16-rc1 are affected by CVE-2022-44370.
CVE-2022-44370 has a severity rating of 7.8 (high).
Upgrade NASM to a version higher than 2.16 or apply the necessary patches provided by the vendor.
You can find more information about CVE-2022-44370 at the following reference: https://bugzilla.nasm.us/show_bug.cgi?id=3392815