VDB

CVE-2018-8881

CVE-2018-8881 PUBLISHED CVSS 7.300000190734863 HIGH

Netwide Assembler (NASM) 2.13.02rc2 has a heap-based buffer over-read in the function tokenize in asm/preproc.c, related to an unterminated string.

EPSS 1.09% · 64.1th percentile

Risk Scores

CVSS 3.0
7.300000190734863
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
EPSS Score
1.09%
64.1th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSnasm2.10.07-1, 2.10.09-1, 0
Ubuntu:16.04:LTSnasm0, 2.11.06-1really2.11.05-1, 2.11.08-1

Timeline

  • Mar 20, 2018 CVE Published
  • Jul 13, 2020 CVE Updated
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Oct 28, 2021 EPSS Score
  • Dec 30, 2021 EPSS Score
  • Mar 3, 2022 EPSS Score
  • May 5, 2022 EPSS Score
  • Sep 9, 2022 EPSS Score
  • Nov 12, 2022 EPSS Score
  • Jan 14, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›