Show filters
16 Total Results
Displaying 1-10 of 16
Sort by:
Attacker Value
Unknown

CVE-2023-49558

Disclosure Date: January 03, 2024 (last updated January 10, 2024)
An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expand_mmac_params function in the modules/preprocs/nasm/nasm-pp.c component.
Attacker Value
Unknown

CVE-2023-49557

Disclosure Date: January 03, 2024 (last updated January 10, 2024)
An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the yasm_section_bcs_first function in the libyasm/section.c component.
Attacker Value
Unknown

CVE-2023-49556

Disclosure Date: January 03, 2024 (last updated January 10, 2024)
Buffer Overflow vulnerability in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expr_delete_term function in the libyasm/expr.c component.
Attacker Value
Unknown

CVE-2023-49555

Disclosure Date: January 03, 2024 (last updated January 10, 2024)
An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expand_smacro function in the modules/preprocs/nasm/nasm-pp.c component.
Attacker Value
Unknown

CVE-2023-49554

Disclosure Date: January 03, 2024 (last updated February 25, 2025)
Use After Free vulnerability in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the do_directive function in the modules/preprocs/nasm/nasm-pp.c component.
Attacker Value
Unknown

CVE-2023-37732

Disclosure Date: July 26, 2023 (last updated February 25, 2025)
Yasm v1.3.0.78 was found prone to NULL Pointer Dereference in /libyasm/intnum.c and /elf/elf.c, which allows the attacker to cause a denial of service via a crafted file.
Attacker Value
Unknown

CVE-2023-31725

Disclosure Date: May 17, 2023 (last updated February 25, 2025)
yasm 1.3.0.55.g101bc was discovered to contain a heap-use-after-free via the function expand_mmac_params at yasm/modules/preprocs/nasm/nasm-pp.c.
Attacker Value
Unknown

CVE-2023-31724

Disclosure Date: May 17, 2023 (last updated October 08, 2023)
yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the function do_directive at /nasm/nasm-pp.c.
Attacker Value
Unknown

CVE-2023-31723

Disclosure Date: May 17, 2023 (last updated October 08, 2023)
yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the function expand_mmac_params at /nasm/nasm-pp.c.
Attacker Value
Unknown

CVE-2023-31975

Disclosure Date: May 09, 2023 (last updated February 24, 2025)
yasm v1.3.0 was discovered to contain a memory leak via the function yasm_intnum_copy at /libyasm/intnum.c. Note: Multiple third parties dispute this as a bug and not a vulnerability according to the YASM security policy.