Buffer Under-read Vulnerability in Netwide Assembler by NASM
CVE-2018-8882
7.8HIGH
What is CVE-2018-8882?
The Netwide Assembler (NASM) version 2.13.02rc2 contains a stack-based buffer under-read vulnerability that occurs in the ieee_shr function located in asm/float.c. This vulnerability is triggered when a large shift value is used during assembly operations, potentially leading to unintended behavior and security risks. Users of affected versions should take immediate measures to upgrade to a patched version to mitigate possible threats.
