Wind River Support Network

HomeDefectsLIN10-6906
Not to be fixed

LIN10-6906 : Security Advisory - nasm - CVE-2019-20334

Created: Jan 5, 2020    Updated: Dec 22, 2022
Resolved Date: Dec 22, 2022
Found In Version: 10.17.41.1
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

In Netwide Assembler (NASM) 2.14.02, stack consumption occurs in expr# functions in asm/eval.c. This potentially affects the relationships among expr0, expr1, expr2, expr3, expr4, expr5, and expr6 (and stdscan in asm/stdscan.c). This is similar to CVE-2019-6290 and CVE-2019-6291.

CREATE(Triage):(User=admin) CVE-2019-20334 (https://nvd.nist.gov/vuln/detail/CVE-2019-20334)

CVEs


Live chat
Online