๐Ÿ” CVE Alert

CVE-2026-6067

HIGH 7.5

CVE-2026-6067

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

A heap buffer overflow vulnerability exists in the Netwide Assembler (NASM) due to a lack of bounds checking in the obj_directive() function. This vulnerability can be exploited by a user assembling a malicious .asm file, potentially leading to heap memory corruption, denial of service (crash), and arbitrary code execution.

Vendor nasm
Product nasm
Published Apr 10, 2026
Last Updated Apr 10, 2026
Stay Ahead of the Next One

Get instant alerts for nasm nasm

Be the first to know when new high vulnerabilities affecting nasm nasm are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

NASM / NASM
nasm-3.02rc5

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/netwide-assembler/nasm/issues/203