Skip to main content

Vendor/product archive

yasm_project / yasm CVEs

Beta · best-effort

17 CVEs tagged to yasm_project / yasm0 Critical, 1 High, 15 Medium, 1 Low, 0 Unrated.

CVE-2024-22653

Published May 29, 2025

yasm commit 9defefae was discovered to contain a NULL pointer dereference via the yasm_section_bcs_append function at section.c.

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-49558

Published Jan 3, 2024

An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expand_mmac_params function in the modules/preprocs/nasm/nasm-pp.c component.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-49557

Published Jan 3, 2024

An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the yasm_section_bcs_first function in the libyasm/section.c component.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-49556

Published Jan 3, 2024

Buffer Overflow vulnerability in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expr_delete_term function in the libyasm/expr.c component.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-49555

Published Jan 3, 2024

An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expand_smacro function in the modules/preprocs/nasm/nasm-pp.c component.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-49554

Published Jan 3, 2024

Use After Free vulnerability in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the do_directive function in the modules/preprocs/nasm/nasm-pp.c comp…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37732

Published Jul 26, 2023

Yasm v1.3.0.78 was found prone to NULL Pointer Dereference in /libyasm/intnum.c and /elf/elf.c, which allows the attacker to cause a denial of service via a crafted file.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-31725

Published May 17, 2023

yasm 1.3.0.55.g101bc was discovered to contain a heap-use-after-free via the function expand_mmac_params at yasm/modules/preprocs/nasm/nasm-pp.c.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-31724

Published May 17, 2023

yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the function do_directive at /nasm/nasm-pp.c.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-31723

Published May 17, 2023

yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the function expand_mmac_params at /nasm/nasm-pp.c.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-31975

Published May 9, 2023

yasm v1.3.0 was discovered to contain a memory leak via the function yasm_intnum_copy at /libyasm/intnum.c. Note: Multiple third parties dispute this as a bug and not a vulnerabil…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-30402

Published Apr 25, 2023

YASM v1.3.0 was discovered to contain a heap overflow via the function handle_dot_label at /nasm/nasm-token.re. Note: This has been disputed by third parties who argue this is a b…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-29583

Published Apr 24, 2023

yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the function parse_expr5 at /nasm/nasm-parse.c. Note: This has been disputed by third parties who argue this is…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-29582

Published Apr 24, 2023

yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the function parse_expr1 at /nasm/nasm-parse.c. Note: This has been disputed by third parties who argue this is…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-29579

Published Apr 24, 2023

yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the component yasm/yasm+0x43b466 in vsprintf. Note: This has been disputed by third parties who argue this is a…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-29581

Published Apr 12, 2023

yasm 1.3.0.55.g101bc has a segmentation violation in the function delete_Token at modules/preprocs/nasm/nasm-pp.c. NOTE: although a libyasm application could become unavailable if…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-29580

Published Apr 12, 2023

yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the component yasm_expr_create at /libyasm/expr.c.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-17 of 17 CVEsPage 1 of 1