pkg:Debian/nasm

77 total CVEsCRITICAL2HIGH20MEDIUM49LOW1

✅ Check your installed version

All known vulnerabilities

  • CRITICAL9.8CVE-2020-24978In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c.
    from 0, < 2.15.04-1
  • CRITICAL9.6CVE-2026-6068NASM contains a heap use after free vulnerability in response file (-@) processing where a dangling pointer to freed memory is stored in th…
    from 0
  • HIGH7.8CVE-2025-8846A vulnerability has been found in NASM Netwide Assember 2.17rc0.
    from 0
  • HIGH7.8CVE-2025-8845A vulnerability was identified in NASM Netwide Assember 2.17rc0.
    from 0
  • HIGH7.8CVE-2025-8843A vulnerability was found in NASM Netwide Assember 2.17rc0.
    from 0
  • HIGH7.8CVE-2025-8842A vulnerability has been found in NASM Netwide Assember 2.17rc0.
    from 0
  • HIGH7.8CVE-2023-31722There exists a heap buffer overflow in nasm 2.16.02rc1 (GitHub commit: b952891).
    from 0
  • HIGH7.8CVE-2022-44370NASM v2.16 was discovered to contain a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856
    from 0
  • HIGH7.8CVE-2019-8343In Netwide Assembler (NASM) 2.14.02, there is a use-after-free in paste_tokens in asm/preproc.c.
    from 0
  • HIGH7.8CVE-2018-19216Netwide Assembler (NASM) before 2.13.02 has a use-after-free in detoken at asm/preproc.c.
    from 0, < 2.13.02-0.1
  • HIGH7.8CVE-2018-19215Netwide Assembler (NASM) 2.14rc16 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for the special cases of the % a…
    from 0, < 2.14-1
  • HIGH7.8CVE-2018-19214Netwide Assembler (NASM) 2.14rc15 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for insufficient input.
    from 0, < 2.14-1
  • HIGH7.8CVE-2018-10254Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file.
    from 0, < 2.14-1
  • HIGH7.8CVE-2018-8883Netwide Assembler (NASM) 2.13.02rc2 has a buffer over-read in the parse_line function in asm/parser.c via uncontrolled access to nasm_reg_f…
    from 0, < 2.14-1
  • HIGH7.8CVE-2018-8882Netwide Assembler (NASM) 2.13.02rc2 has a stack-based buffer under-read in the function ieee_shr in asm/float.c via a large shift value.
    from 0, < 2.14-1
  • HIGH7.8CVE-2017-11111In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and applica…
    from 0, < 2.13.02-0.1
  • HIGH7.8CVE-2017-10686nasm - security update
    from 0, < 2.10.01-1+deb7u1
  • HIGH7.8CVE-2017-10686nasm - security update
    from 0, < 2.13.02-0.1
  • HIGH7.5CVE-2026-6069NASM’s disasm() function contains a stack based buffer overflow when formatting disassembly output, allowing an attacker triggered out-of-b…
    from 0
  • HIGH7.5CVE-2017-17818In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer over-read that will cause a remote denial of service attack, related to a…
    from 0, < 2.13.02-0.1
  • HIGH7.3CVE-2018-8881Netwide Assembler (NASM) 2.13.02rc2 has a heap-based buffer over-read in the function tokenize in asm/preproc.c, related to an unterminated…
    from 0, < 2.13.02-0.1
  • HIGH7.1CVE-2019-20352In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from expan…
    from 0, < 2.15.04-1
  • MEDIUM6.1CVE-2022-46456NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c.
    from 0
  • MEDIUM5.5CVE-2026-6067A heap buffer overflow vulnerability exists in the Netwide Assembler (NASM) due to a lack of bounds checking in the obj_directive() functio…
    from 0
  • MEDIUM5.5CVE-2025-8844A vulnerability was determined in NASM Netwide Assember 2.17rc0.
    from 0
  • MEDIUM5.5CVE-2023-38668Stack-based buffer over-read in disasm in nasm 2.16 allows attackers to cause a denial of service (crash).
    from 0
  • MEDIUM5.5CVE-2023-38667Stack-based buffer over-read in function disasm in nasm 2.16 allows attackers to cause a denial of service.
    from 0
  • MEDIUM5.5CVE-2023-38665Null pointer dereference in ieee_write_file in nasm 2.16rc0 allows attackers to cause a denial of service (crash).
    from 0
  • MEDIUM5.5CVE-2022-29654Buffer overflow vulnerability in quote_for_pmake in asm/nasm.c in nasm before 2.15.05 allows attackers to cause a denial of service via cra…
    from 0
  • MEDIUM5.5CVE-2020-21687Buffer Overflow vulnerability in scan function in stdscan.c in nasm 2.15rc0 allows remote attackers to cause a denial of service via crafte…
    from 0, < 2.15.04-1
  • MEDIUM5.5CVE-2020-21686A stack-use-after-scope issue discovered in expand_mmac_params function in preproc.c in nasm before 2.15.04 allows remote attackers to caus…
    from 0, < 2.15.04-1
  • MEDIUM5.5CVE-2020-21685Buffer Overflow vulnerability in hash_findi function in hashtbl.c in nasm 2.15rc0 allows remote attackers to cause a denial of service via…
    from 0, < 2.15.04-1
  • MEDIUM5.5CVE-2020-21528A Segmentation Fault issue discovered in in ieee_segment function in outieee.c in nasm 2.14.03 and 2.15 allows remote attackers to cause a…
    from 0
  • MEDIUM5.5CVE-2020-18780A Use After Free vulnerability in function new_Token in asm/preproc.c in nasm 2.14.02 allows attackers to cause a denial of service via cra…
    from 0, < 2.15.04-1
  • MEDIUM5.5CVE-2022-44369NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference via output/outaout.c.
    from 0
  • MEDIUM5.5CVE-2022-44368NASM v2.16 was discovered to contain a null pointer deference in the NASM component
    from 0
  • MEDIUM5.5CVE-2022-46457NASM v2.16 was discovered to contain a segmentation violation in the component ieee_write_file at /output/outieee.c.
    from 0
  • MEDIUM5.5CVE-2022-41420nasm v2.16 was discovered to contain a stack overflow in the Ndisasm component
    from 0
  • MEDIUM5.5CVE-2021-33452An issue was discovered in NASM version 2.16rc0.
    from 0
  • MEDIUM5.5CVE-2021-33450An issue was discovered in NASM version 2.16rc0.
    from 0
  • MEDIUM5.5CVE-2021-45257An infinite loop vulnerability exists in nasm 2.16rc0 via the gpaste_tokens function.
    from 0
  • MEDIUM5.5CVE-2021-45256A Null Pointer Dereference vulnerability existfs in nasm 2.16rc0 via asm/preproc.c.
    from 0
  • MEDIUM5.5CVE-2020-24242In Netwide Assembler (NASM) 2.15rc10, SEGV can be triggered in tok_text in asm/preproc.c by accessing READ memory.
    from 0, < 2.15.04-1
  • MEDIUM5.5CVE-2020-24241In Netwide Assembler (NASM) 2.15rc10, there is heap use-after-free in saa_wbytes in nasmlib/saa.c.
    from 0, < 2.15.04-1
  • MEDIUM5.5CVE-2019-20334In Netwide Assembler (NASM) 2.14.02, stack consumption occurs in expr# functions in asm/eval.c.
    from 0
  • MEDIUM5.5CVE-2019-14248In libnasm.a in Netwide Assembler (NASM) 2.14.xx, asm/pragma.c allows a NULL pointer dereference in process_pragma, search_pragma_list, and…
    from 0, < 2.15.02-1
  • MEDIUM5.5CVE-2019-6291An issue was discovered in the function expr6 in eval.c in Netwide Assembler (NASM) through 2.14.02.
    from 0
  • MEDIUM5.5CVE-2019-6290An infinite recursion issue was discovered in eval.c in Netwide Assembler (NASM) through 2.14.02.
    from 0
  • MEDIUM5.5CVE-2018-20538There is a use-after-free at asm/preproc.c (function pp_getline) in Netwide Assembler (NASM) 2.14rc16 that will cause a denial of service d…
    from 0
  • MEDIUM5.5CVE-2018-20535There is a use-after-free at asm/preproc.c (function pp_getline) in Netwide Assembler (NASM) 2.14rc16 that will cause a denial of service d…
    from 0, < 2.15.04-1
  • MEDIUM5.5CVE-2018-1000886nasm version 2.14.01rc5, 2.15 contains a Buffer Overflow vulnerability in asm/stdscan.c:130 that can result in Stack-overflow caused by tri…
    from 0
  • MEDIUM5.5CVE-2018-19755There is an illegal address access at asm/preproc.c (function: is_mmacro) in Netwide Assembler (NASM) 2.14rc16 that will cause a denial of…
    from 0, < 2.15.02-1
  • MEDIUM5.5CVE-2018-19213Netwide Assembler (NASM) through 2.14rc16 has memory leaks that may lead to DoS, related to nasm_malloc in nasmlib/malloc.c.
    from 0
  • MEDIUM5.5CVE-2018-19209Netwide Assembler (NASM) 2.14rc15 has a NULL pointer dereference in the function find_label in asm/labels.c that will lead to a DoS attack.
    from 0, < 2.14-1
  • MEDIUM5.5CVE-2018-16999Netwide Assembler (NASM) 2.14rc15 has an invalid memory write (segmentation fault) in expand_smacro in preproc.c, which allows attackers to…
    from 0, < 2.14-1
  • MEDIUM5.5CVE-2018-16517asm/labels.c in Netwide Assembler (NASM) is prone to NULL Pointer Dereference, which allows the attacker to cause a denial of service via a…
    from 0, < 2.14-1
  • MEDIUM5.5CVE-2018-1000667NASM nasm-2.13.03 nasm- 2.14rc15 version 2.14rc15 and earlier contains a memory corruption (crashed) of nasm when handling a crafted file d…
    from 0, < 2.14-1
  • MEDIUM5.5CVE-2018-16382Netwide Assembler (NASM) 2.14rc15 has a buffer over-read in x86/regflags.c.
    from 0, < 2.14-1
  • MEDIUM5.5CVE-2018-10316Netwide Assembler (NASM) 2.14rc0 has an endless while loop in the assemble_file function of asm/nasm.c because of a globallineno integer ov…
    from 0, < 2.14-1
  • MEDIUM5.5CVE-2018-10016Netwide Assembler (NASM) 2.14rc0 has a division-by-zero vulnerability in the expr5 function in asm/eval.c via a malformed input file.
    from 0, < 2.14-1
  • MEDIUM5.5CVE-2017-17820In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_list_one_macro in asm/preproc.c that will lead to a remote denial of s…
    from 0, < 2.13.02-0.1
  • MEDIUM5.5CVE-2017-17819In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in the function find_cc() in asm/preproc.c that will cause a remote…
    from 0, < 2.13.02-0.1
  • MEDIUM5.5CVE-2017-17817In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_verror in asm/preproc.c that will cause a remote denial of service att…
    from 0, < 2.13.02-0.1
  • MEDIUM5.5CVE-2017-17816In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_getline in asm/preproc.c that will cause a remote denial of service at…
    from 0, < 2.13.02-0.1
  • MEDIUM5.5CVE-2017-17815In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in is_mmacro() in asm/preproc.c that will cause a remote denial of…
    from 0, < 2.13.02-0.1
  • MEDIUM5.5CVE-2017-17814In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in do_directive in asm/preproc.c that will cause a remote denial of service…
    from 0, < 2.13.02-0.1
  • MEDIUM5.5CVE-2017-17813In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in the pp_list_one_macro function in asm/preproc.c that will cause a remote…
    from 0, < 2.13.02-0.1
  • MEDIUM5.5CVE-2017-17812In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer over-read in the function detoken() in asm/preproc.c that will cause a re…
    from 0, < 2.13.02-0.1
  • MEDIUM5.5CVE-2017-17811In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer overflow that will cause a remote denial of service attack, related to a…
    from 0, < 2.13.02-0.1
  • MEDIUM5.5CVE-2017-17810In Netwide Assembler (NASM) 2.14rc0, there is a "SEGV on unknown address" that will cause a remote denial of service attack, because asm/pr…
    from 0, < 2.13.02-0.1
  • MEDIUM5.5CVE-2017-14228In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in the function paste_tokens() in preproc.c, aka a NULL pointer der…
    from 0, < 2.13.02-0.1
  • LOW3.3CVE-2020-18974Buffer Overflow in Netwide Assembler (NASM) v2.15.xx allows attackers to cause a denial of service via 'crc64i' in the component 'nasmlib/c…
    from 0
  • CVE-2008-7177Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnera…
    from 0, < 2.03.01-1
  • CVE-2008-2719Off-by-one error in the ppscan function (preproc.c) in Netwide Assembler (NASM) 2.02 allows context-dependent attackers to cause a denial o…
    from 0, < 2.03.01-1
  • CVE-2005-1194Stack-based buffer overflow in the ieee_putascii function for nasm 0.98 and earlier allows attackers to execute arbitrary code via a crafte…
    from 0, < 0.98.38-1.2
  • CVE-2004-1287nasm - buffer overflow
    from 0, < 0.98.28cvs-1woody2
  • CVE-2004-1287nasm - buffer overflow
    from 0, < 0.98.38-1.1