🔐 CVE Alert

CVE-2026-6069

HIGH 7.5

CVE-2026-6069

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

NASM’s disasm() function contains a stack based buffer overflow when formatting disassembly output, allowing an attacker triggered out-of-bounds write when `slen` exceeds the buffer capacity.

Vendor nasm
Product nasm
Published Apr 10, 2026
Last Updated Apr 10, 2026
Stay Ahead of the Next One

Get instant alerts for nasm nasm

Be the first to know when new high vulnerabilities affecting nasm nasm are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

NASM / NASM
nasm-3.02rc5

References

NVD ↗ CVE.org ↗ EPSS Data ↗
github.com: https://github.com/netwide-assembler/nasm/issues/217