CVE-2008-2719

Publication date 16 June 2008

Last updated 24 July 2024


Ubuntu priority

Off-by-one error in the ppscan function (preproc.c) in Netwide Assembler (NASM) 2.02 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted file that triggers a stack-based buffer overflow.

Status

Package Ubuntu Release Status
nasm 8.04 LTS hardy
Fixed 0.99.06-2ubuntu0.1
7.10 gutsy
Not affected
7.04 feisty
Not affected
6.06 LTS dapper
Not affected

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
nasm

References

Related Ubuntu Security Notices (USN)

    • USN-648-1
    • nasm vulnerability
    • 30 September 2008

Other references