CVE-2017-17820 PUBLISHED

In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_list_one_macro in asm/preproc.c that will lead to a remote denial of service attack, related to mishandling of operand-type errors.

EPSS 0.18% · 38.9th percentile

Risk Scores

EPSS Score
0.18%
38.9th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSnasm0, 2.10.07-1, 2.10.09-1
Ubuntu:16.04:LTSnasm0, 2.11.06-1really2.11.05-1, 2.11.08-1

Timeline

References

Open in Interactive Console →