CVE-2019-14248: Nasm Netwide Assembler

Medium severity, CVSS 5.5. EPSS: 0.9% chance of exploitation in the next 30 days.

In libnasm.a in Netwide Assembler (NASM) 2.14.xx, asm/pragma.c allows a NULL pointer dereference in process_pragma, search_pragma_list, and nasm_set_limit when "%pragma limit" is mishandled.

Affected products

  • Nasm Netwide Assembler: from 2.14, up to and including 2.14.02

Published 2019-07-24. Last modified 2026-06-17.