CVE-2019-20334: Nasm Netwide Assembler
Medium severity, CVSS 5.5. EPSS: 0.8% chance of exploitation in the next 30 days.
In Netwide Assembler (NASM) 2.14.02, stack consumption occurs in expr# functions in asm/eval.c. This potentially affects the relationships among expr0, expr1, expr2, expr3, expr4, expr5, and expr6 (and stdscan in asm/stdscan.c). This is similar to CVE-2019-6290 and CVE-2019-6291.
Affected products
- Nasm Netwide Assembler: version 2.14.02 only
Published 2020-01-04. Last modified 2026-06-17.