CVE-2017-17819 PUBLISHED

In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in the function find_cc() in asm/preproc.c that will cause a remote denial of service attack, because pointers associated with skip_white_ calls are not validated.

EPSS 0.20% · 41.7th percentile

Risk Scores

EPSS Score
0.20%
41.7th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSnasm0, 2.11.06-1really2.11.05-1, 2.11.08-1
Ubuntu:14.04:LTSnasm0, 2.10.07-1, 2.10.09-1

Timeline

References

Open in Interactive Console →