CVE-2022-44370: Buffer Overflow
Published Mar 29, 2023
·Updated
NASM v2.16 was discovered to contain a heap buffer overflow in the component quoteforpmake() asm/nasm.c:856
Affected Software
2 affected components
nasm Netwide Assembler<2.16
nasm Netwide Assembler=2.16-rc1
Event History
Mar 29, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2022-44370?
CVE-2022-44370 is a vulnerability found in NASM v2.16 that allows for a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856.
2
What software is affected by CVE-2022-44370?
NASM v2.16 and NASM v2.16-rc1 are affected by CVE-2022-44370.
3
How severe is CVE-2022-44370?
CVE-2022-44370 has a severity rating of 7.8 (high).
4
How can I fix CVE-2022-44370?
Upgrade NASM to a version higher than 2.16 or apply the necessary patches provided by the vendor.
5
Where can I find more information about CVE-2022-44370?
You can find more information about CVE-2022-44370 at the following reference: https://bugzilla.nasm.us/show_bug.cgi?id=3392815