CVE-2017-17815 PUBLISHED

In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in is_mmacro() in asm/preproc.c that will cause a remote denial of service attack, because of a missing check for the relationship between minimum and maximum parameter counts.

EPSS 0.20% · 41.7th percentile

Risk Scores

EPSS Score
0.20%
41.7th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSnasm0, 2.10.07-1, 2.10.09-1
Ubuntu:16.04:LTSnasm0, 2.11.06-1really2.11.05-1, 2.11.08-1

Timeline

References

Open in Interactive Console →