Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
164 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 1.3% | — | Nasm Netwide AssemblerDebian Linux | 12/11/2018 | 17/6/2026 | Netwide Assembler (NASM) before 2.13.02 has a use-after-free in detoken at asm/preproc.c. | |
| Modificada | Alta (7.8) | 1.2% | — | Nasm Netwide AssemblerRedhat Enterprise Linux | 12/11/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.14rc16 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for the special cases of the % and $ and ! characters. | |
| Modificada | Alta (7.8) | 1.3% | — | Nasm Netwide AssemblerRedhat Enterprise Linux | 12/11/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.14rc15 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for insufficient input. | |
| Modificada | Media (5.5) | 0.75% | — | Nasm Netwide Assembler | 12/11/2018 | 17/6/2026 | Netwide Assembler (NASM) through 2.14rc16 has memory leaks that may lead to DoS, related to nasm_malloc in nasmlib/malloc.c. | |
| Modificada | Media (5.5) | 0.78% | — | Nasm Netwide Assembler | 12/11/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.14rc15 has a NULL pointer dereference in the function find_label in asm/labels.c that will lead to a DoS attack. | |
| Modificada | Media (5.5) | 1.1% | — | Nasm Netwide Assembler | 13/9/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.14rc15 has an invalid memory write (segmentation fault) in expand_smacro in preproc.c, which allows attackers to cause a denial of service via a crafted input file. | |
| Modificada | Media (5.5) | 5.2% | 💥 Exploit | Nasm Netwide Assembler | 6/9/2018 | 17/6/2026 | asm/labels.c in Netwide Assembler (NASM) is prone to NULL Pointer Dereference, which allows the attacker to cause a denial of service via a crafted file. | |
| Modificada | Media (5.5) | 1.2% | — | Nasm Netwide Assembler | 6/9/2018 | 17/6/2026 | NASM nasm-2.13.03 nasm- 2.14rc15 version 2.14rc15 and earlier contains a memory corruption (crashed) of nasm when handling a crafted file due to function assemble_file(inname, depend_ptr) at asm/nasm.c:482. vulnerability in function assemble_file(inname, depend_ptr) at asm/nasm.c:482. that can result in aborting/crash… | |
| Modificada | Media (5.5) | 0.95% | — | Nasm Netwide Assembler | 3/9/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.14rc15 has a buffer over-read in x86/regflags.c. | |
| Modificada | Media (6.7) | 0.39% | — | Cisco Wide Area Application Services | 7/6/2018 | 17/6/2026 | A vulnerability in the Disk Check Tool (disk-check.sh) for Cisco Wide Area Application Services (WAAS) Software could allow an authenticated, local attacker to elevate their privilege level to root. The attacker must have valid user credentials with super user privileges (level 15) to log in to the device. The… | |
| Modificada | Media (5.3) | 2.4% | — | Cisco Wide Area Application Services | 7/6/2018 | 17/6/2026 | A vulnerability in the default configuration of the Simple Network Management Protocol (SNMP) feature of Cisco Wide Area Application Services (WAAS) Software could allow an unauthenticated, remote attacker to read data from an affected device via SNMP. The vulnerability is due to a hard-coded, read-only community… | |
| Modificada | Media (5.5) | 1.1% | — | Nasm Netwide Assembler | 24/4/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.14rc0 has an endless while loop in the assemble_file function of asm/nasm.c because of a globallineno integer overflow. | |
| Modificada | Alta (7.8) | 1.4% | — | Nasm Netwide Assembler | 21/4/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file. Remote attackers could leverage this vulnerability to cause a denial of service or possibly have unspecified other impact via a crafted ELF file. | |
| Modificada | Media (5.5) | 1.1% | — | Nasm Netwide Assembler | 11/4/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.14rc0 has a division-by-zero vulnerability in the expr5 function in asm/eval.c via a malformed input file. | |
| Modificada | Alta (7.8) | 0.37% | — | Nasm Netwide Assembler | 20/3/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.13.02rc2 has a buffer over-read in the parse_line function in asm/parser.c via uncontrolled access to nasm_reg_flags. | |
| Modificada | Alta (7.8) | 0.37% | — | Nasm Netwide Assembler | 20/3/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.13.02rc2 has a stack-based buffer under-read in the function ieee_shr in asm/float.c via a large shift value. | |
| Modificada | Alta (7.3) | 1.1% | — | Nasm Netwide AssemblerCanonical Ubuntu Linux | 20/3/2018 | 17/6/2026 | Netwide Assembler (NASM) 2.13.02rc2 has a heap-based buffer over-read in the function tokenize in asm/preproc.c, related to an unterminated string. | |
| Modificada | Media (5.5) | 1.4% | — | Nasm Netwide AssemblerCanonical Ubuntu Linux | 21/12/2017 | 17/6/2026 | In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_list_one_macro in asm/preproc.c that will lead to a remote denial of service attack, related to mishandling of operand-type errors. | |
| Modificada | Media (5.5) | 1.4% | — | Nasm Netwide AssemblerCanonical Ubuntu Linux | 21/12/2017 | 17/6/2026 | In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in the function find_cc() in asm/preproc.c that will cause a remote denial of service attack, because pointers associated with skip_white_ calls are not validated. | |
| Modificada | Alta (7.5) | 2.7% | — | Nasm Netwide AssemblerCanonical Ubuntu Linux | 21/12/2017 | 17/6/2026 | In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer over-read that will cause a remote denial of service attack, related to a while loop in paste_tokens in asm/preproc.c. | |
| Modificada | Media (5.5) | 1.4% | — | Nasm Netwide AssemblerCanonical Ubuntu Linux | 21/12/2017 | 17/6/2026 | In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_verror in asm/preproc.c that will cause a remote denial of service attack. | |
| Modificada | Media (5.5) | 1.2% | — | Nasm Netwide AssemblerCanonical Ubuntu Linux | 21/12/2017 | 17/6/2026 | In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_getline in asm/preproc.c that will cause a remote denial of service attack. | |
| Modificada | Media (5.5) | 1.4% | — | Nasm Netwide AssemblerCanonical Ubuntu Linux | 21/12/2017 | 17/6/2026 | In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in is_mmacro() in asm/preproc.c that will cause a remote denial of service attack, because of a missing check for the relationship between minimum and maximum parameter counts. | |
| Modificada | Media (5.5) | 1.2% | — | Nasm Netwide AssemblerCanonical Ubuntu Linux | 21/12/2017 | 17/6/2026 | In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in do_directive in asm/preproc.c that will cause a remote denial of service attack. | |
| Modificada | Media (5.5) | 1.2% | — | Nasm Netwide AssemblerCanonical Ubuntu Linux | 21/12/2017 | 17/6/2026 | In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in the pp_list_one_macro function in asm/preproc.c that will cause a remote denial of service attack, related to mishandling of line-syntax errors. |