CVE-2026-6067
EUVD-2026-2137810.04.2026, 14:16
A heap buffer overflow vulnerability exists in the Netwide Assembler (NASM) due to a lack of bounds checking in the obj_directive() function. This vulnerability can be exploited by a user assembling a malicious .asm file, potentially leading to heap memory corruption, denial of service (crash), and arbitrary code execution.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| nasm | netwide_assembler | 3.02:rc5 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration