A heap buffer overflow vulnerability exists in the Netwide Assembler (NASM) due to a lack of bounds checking in the obj_directive() function. This vulnerability can be exploited by a user assembling a malicious .asm file, potentially leading to heap memory corruption, denial of service (crash), and arbitrary code execution.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/netwide-assembler/nasm/issues/203 |
|
History
Fri, 10 Apr 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nasm
Nasm nasm |
|
| Vendors & Products |
Nasm
Nasm nasm |
Fri, 10 Apr 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A heap buffer overflow vulnerability exists in the Netwide Assembler (NASM) due to a lack of bounds checking in the obj_directive() function. This vulnerability can be exploited by a user assembling a malicious .asm file, potentially leading to heap memory corruption, denial of service (crash), and arbitrary code execution. | |
| Title | CVE-2026-6067 | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2026-04-10T13:30:26.140Z
Reserved: 2026-04-10T13:26:16.675Z
Link: CVE-2026-6067
No data.
Status : Received
Published: 2026-04-10T14:16:38.620
Modified: 2026-04-10T14:16:38.620
Link: CVE-2026-6067
No data.
OpenCVE Enrichment
Updated: 2026-04-10T14:40:42Z
Weaknesses
No weakness.