CVE-2025-8846: NASM Netwide Assember parser.c parse_line stack-based overflow
A vulnerability has been found in NASM Netwide Assember 2.17rc0. Affected is the function parseline of the file parser.c. The manipulation leads to stack-based buffer overflow. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.
Other sources
NASM Netwide Assember parser.c parseline stack-based overflow
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8846?
CVE-2025-8846 is classified as a critical vulnerability due to its potential for remote exploitation through a stack-based buffer overflow.
How do I fix CVE-2025-8846?
To mitigate CVE-2025-8846, upgrade to the latest stable version of NASM Netwide Assembler where the vulnerability has been addressed.
What are the implications of exploiting CVE-2025-8846?
Exploiting CVE-2025-8846 can lead to unauthorized code execution and potential takeover of the system if successful.
What systems are affected by CVE-2025-8846?
CVE-2025-8846 affects the NASM Netwide Assembler version 2.17rc0 and possibly earlier versions.
Is exploitation of CVE-2025-8846 remote or local?
Exploitation of CVE-2025-8846 requires local access to the affected system, making it less likely to be used in remote attacks.