Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

openSUSE 15.1: openSUSE-SU-2020:0952-1 Moderate: nasm Security Issue

opensuse
Calendar Grey July 13, 2020
Dist Opensuse Esm H88
The latest patch for openSUSE resolves a total of 13 vulnerabilities related to nasm, enhancing both the security and overall performance of the software.
An update that solves 13 vulnerabilities and has one errata is now available.

Description

This update for nasm fixes the following issues:

nasm was updated to version 2.14.02.

This allows building of Mozilla Firefox 78ESR and also contains lots of

bugfixes, security fixes and improvements.

* Fix crash due to multiple errors or warnings during the code generation

pass if a list file is specified.

* Create all system-defined macros defore processing command-line given

preprocessing directives (-p, -d, -u, --pragma, --before).

* If debugging is enabled, define a __DEBUG_FORMAT__ predefined macro. See

section 4.11.7.

* Fix an assert for the case in the obj format when a SEG operator refers to an EXTERN symbol declared further down in the code.

* Fix a corner case in the floating-point code where a binary, octal or

hexadecimal floating-point having at least 32, 11, or 8 mantissa digits

could produce slightly incorrect results under very specific conditions.

* Support -MD without a filename, for gcc compatibility....

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.1:

zypper in -t patch openSUSE-2020-952=1

Package List

- openSUSE Leap 15.1 (i586 x86_64):

nasm-2.14.02-lp151.3.3.1

nasm-debuginfo-2.14.02-lp151.3.3.1

nasm-debugsource-2.14.02-lp151.3.3.1

References

https://www.suse.com/security/cve/CVE-2018-1000667.html

https://www.suse.com/security/cve/CVE-2018-10016.html

https://www.suse.com/security/cve/CVE-2018-10254.html

https://www.suse.com/security/cve/CVE-2018-10316.html

https://www.suse.com/security/cve/CVE-2018-16382.html

https://www.suse.com/security/cve/CVE-2018-16517.html

https://www.suse.com/security/cve/CVE-2018-16999.html

https://www.suse.com/security/cve/CVE-2018-19214.html

https://www.suse.com/security/cve/CVE-2018-19215.html

https://www.suse.com/security/cve/CVE-2018-19216.html

https://www.suse.com/security/cve/CVE-2018-8881.html

https://www.suse.com/security/cve/CVE-2018-8882.html

https://www.suse.com/security/cve/CVE-2018-8883.html

https://bugzilla.suse.com/1084631

https://bugzilla.suse.com/1086186

https://bugzilla.suse.com/1086227

https://bugzilla.suse.com/1086228

https://bugzilla.suse.com/1090519

https://bugzilla.suse.com/1090840

https://bugzilla.suse.com/1106878

https://bugzilla.suse.com/1107592

https://bugzilla.suse.com/1107594

https://bugzill...

Read the Full Advisory

Announcement ID: openSUSE-SU-2020:0952-1
Rating: moderate
Affected Products: openSUSE Leap 15.1 le.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here