Wind River Support Network

HomeDefectsLIN10-5256
Not to be fixed

LIN10-5256 : Security Advisory - nasm - CVE-2018-20538

Created: Jan 1, 2019    Updated: Dec 22, 2022
Resolved Date: Dec 22, 2022
Found In Version: 10.17.41.1
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

There is a use-after-free at asm/preproc.c (function pp_getline) in Netwide Assembler (NASM) 2.14rc16 that will cause a denial of service during certain finishes tests.

https://nvd.nist.gov/vuln/detail/CVE-2018-20538

CVEs


Live chat
Online