LWN.net Logo

nasm: off-by-one error

Package(s):nasm CVE #(s):CVE-2008-2719
Created:June 23, 2008 Updated:October 1, 2008
Description: From the CVE entry: Off-by-one error in the ppscan function (preproc.c) in Netwide Assembler (NASM) 2.02 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted file that triggers a stack-based buffer overflow.
Alerts:
Ubuntu USN-648-1 2008-09-30
Mandriva MDVSA-2008:120 2008-06-21

(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds