CVE-2022-46457: Medium severity nasm Netwide Assembler vulnerability
Published Jan 4, 2023
·Updated
NASM v2.16 was discovered to contain a segmentation violation in the component ieeewritefile at /output/outieee.c.
Affected Software
13 affected componentsFixes available
nasm Netwide Assembler=2.16-rc1
nasm Netwide Assembler=2.16-rc10
nasm Netwide Assembler=2.16-rc11
nasm Netwide Assembler=2.16-rc2
nasm Netwide Assembler=2.16-rc3
nasm Netwide Assembler=2.16-rc4
nasm Netwide Assembler=2.16-rc5
nasm Netwide Assembler=2.16-rc6
nasm Netwide Assembler=2.16-rc7
nasm Netwide Assembler=2.16-rc8
nasm Netwide Assembler=2.16-rc9
Microsoft cbl2 nasm 2.16-1
Microsoft cm1 nasm 2.16-1
Event History
Jan 4, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Jan 12, 2023
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2022-46457 vulnerability?
CVE-2022-46457 is a vulnerability in NASM v2.16 that allows a segmentation violation in the component ieee_write_file.
2
What is the severity of CVE-2022-46457?
CVE-2022-46457 has a severity value of 5.5, which is considered medium.
3
How can I fix CVE-2022-46457?
To fix CVE-2022-46457, update your NASM version to a patched release.
4
Which versions of NASM are affected by CVE-2022-46457?
NASM versions 2.16-rc1 to 2.16-rc11 are affected by CVE-2022-46457.
5
Where can I find more information about CVE-2022-46457?
You can find more information about CVE-2022-46457 in the bug report: https://bugzilla.nasm.us/show_bug.cgi?id=3392809