Lucene search

K
redosRedosROS-20240409-09
HistoryApr 09, 2024 - 12:00 a.m.

ROS-20240409-09

2024-04-0900:00:00
redos.red-soft.ru
4
yasm
assembler
vulnerabilities
denial of service
resource consumption
memory handling errors

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

AI Score

7

Confidence

High

EPSS

0.001

Percentile

29.6%

Vulnerability of yasm_section_bcs_first() function of YASM assembler is related to uncontrolled consumption of
resources. Exploitation of the vulnerability may allow an attacker to cause a denial of service

A vulnerability in the expr_delete_term() function of the YASM assembler is associated with an uncontrolled resource consumption.
Exploitation of the vulnerability could allow an attacker to cause a denial of service

A vulnerability in the expand_mmac_params() function of the YASM assembler is associated with an uncontrolled resource consumption.
Exploitation of the vulnerability may allow an attacker to cause a denial of service

A vulnerability in the do_directive() function of the YASM assembler is related to memory handling errors. Exploitation
of the vulnerability could allow an attacker to cause a denial of service

Vulnerability in expand_smacro() function of YASM assembler is related to uncontrolled resource consumption.
Exploitation of the vulnerability may allow an attacker to cause a denial of service

OSVersionArchitecturePackageVersionFilename
redos7.3x86_64yasm< 1.3.0-6UNKNOWN

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

AI Score

7

Confidence

High

EPSS

0.001

Percentile

29.6%