CVE-2026-6068
EUVD-2026-2138010.04.2026, 14:16
NASM contains a heap use after free vulnerability in response file (-@) processing where a dangling pointer to freed memory is stored in the global depend_file and later dereferenced, as the response-file buffer is freed before the pointer is used, allowing for data corruption or remote code execution.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| nasm | netwide_assembler | 3.02:rc5 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration