Stack-based Buffer Over-Read Vulnerability in Nasm by NASM
CVE-2023-38667

5.5MEDIUM

Key Information:

Vendor

Nasm

Vendor
CVE Published:
22 August 2023

What is CVE-2023-38667?

Nasm 2.16 contains a stack-based buffer over-read vulnerability in the 'disasm' function, which could be exploited by attackers to trigger a denial of service condition. This flaw may allow unauthorized entities to cause unexpected application behavior, impacting system stability and reliability. Proper updates and security measures should be prioritized to mitigate potential threats stemming from this vulnerability.

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.