Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-2719
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-2719

Description:
Off-by-one error in the ppscan function (preproc.c) in Netwide Assembler (NASM) 2.02 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted file that triggers a stack-based buffer overflow.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/42995

UBUNTU
  http://www.ubuntu.com/usn/usn-648-1

ST
  1020259

SAID
  Secunia Advisory: SA30594
  Secunia Advisory: SA32059

MLIST
  http://www.openwall.com/lists/oss-security/2008/06/11/4
  http://www.openwall.com/lists/oss-security/2008/06/11/5

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDVSA-2008:120

CONFIRM
  http://repo.or.cz/w/nasm.git?a=commit;h=76ec8e73db16f4cf1453a142d03bcc74d528f72f

BID
  29656


Return to the previous page.