CVE-2017-14228 PUBLISHED

In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in the function paste_tokens() in preproc.c, aka a NULL pointer dereference. It will lead to remote denial of service.

EPSS 0.19% · 40.1th percentile

Risk Scores

EPSS Score
0.19%
40.1th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSnasm0, 2.10.07-1, 2.10.09-1
Ubuntu:16.04:LTSnasm0, 2.11.06-1really2.11.05-1, 2.11.08-1

Timeline

References

Open in Interactive Console →