CVE-2018-19755: Nasm Netwide Assembler

Medium severity, CVSS 5.5. EPSS: 1% chance of exploitation in the next 30 days.

There is an illegal address access at asm/preproc.c (function: is_mmacro) in Netwide Assembler (NASM) 2.14rc16 that will cause a denial of service (out-of-bounds array access) because a certain conversion can result in a negative integer.

Affected products

  • Nasm Netwide Assembler: version 12.14 only

Published 2018-11-30. Last modified 2026-06-17.