CVE-2017-10686
Last modified
CVE-2017-10686 is a vulnerability of currently unknown severity. In Netwide Assembler (NASM) 2.14rc0, there are multiple heap use after free vulnerabilities in the tool nasm. The related heap is allocated in the token() function and freed in the detoken() function (called by pp_getline()) - it is used again at multiple positions later that could cause multiple damages. EPSS estimates a 2.95% chance of exploitation in the next 30 days.
Description
In Netwide Assembler (NASM) 2.14rc0, there are multiple heap use after free vulnerabilities in the tool nasm. The related heap is allocated in the token() function and freed in the detoken() function (called by pp_getline()) - it is used again at multiple positions later that could cause multiple damages. For example, it causes a corrupted double-linked list in detoken(), a double free or corruption in delete_Token(), and an out-of-bounds write in detoken(). It has a high possibility to lead to a remote code execution attack.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Nasm | Netwide Assembler | 2.14 | Rc0 |
| Canonical | Ubuntu Linux | 14.04 | — |
References
- https://bugzilla.nasm.us/show_bug.cgi?id=3392414Exploit, Issue Tracking, Patch, Third Party Advisory, VDB Entry
- https://usn.ubuntu.com/3694-1/Third Party Advisory
- https://bugzilla.nasm.us/show_bug.cgi?id=3392414Exploit, Issue Tracking, Patch, Third Party Advisory, VDB Entry
- https://usn.ubuntu.com/3694-1/Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-10686?
How severe is CVE-2017-10686?
How do I fix CVE-2017-10686?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-10680Cross-site request forgery (CSRF) vulnerability in Piwigo th…
- CVE-2017-10681Cross-site request forgery (CSRF) vulnerability in Piwigo th…
- CVE-2017-10682SQL injection vulnerability in the administrative backend in…
- CVE-2017-10683In mpg123 1.25.0, there is a heap-based buffer over-read in …7.5
- CVE-2017-10684In ncurses 6.0, there is a stack-based buffer overflow in th…9.8
- CVE-2017-10685In ncurses 6.0, there is a format string vulnerability in th…9.8
- CVE-2017-10687In LibSass 3.4.5, there is a heap-based buffer over-read in …
- CVE-2017-10688In LibTIFF 4.0.8, there is a assertion abort in the TIFFWrit…
- CVE-2017-10689In previous versions of Puppet Agent it was possible to inst…
- CVE-2017-1069Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2017-10690In previous versions of Puppet Agent it was possible for the…
- CVE-2017-10699avcodec 2.2.x, as used in VideoLAN VLC media player 2.2.7-x …
Are you affected by CVE-2017-10686?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
