A vulnerability was determined in NASM Netwide Assember 2.17rc0. This vulnerability affects the function parse_smacro_template of the file preproc.c. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.
The product does not release or incorrectly releases a resource before it is made available for re-use.
Link | Tags |
---|---|
https://vuldb.com/?id.319378 | technical description vdb entry |
https://vuldb.com/?ctiid.319378 | signature permissions required |
https://vuldb.com/?submit.623187 | third party advisory |
https://vuldb.com/?submit.623196 | third party advisory |
https://vuldb.com/?submit.623198 | third party advisory |
https://bugzilla.nasm.us/show_bug.cgi?id=3392936 | issue tracking |
https://drive.google.com/file/d/10TSdMErFTBtLFIwfh_fia635cmtmFuei/view?usp=drive_link | exploit |