Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE: 2020:1843-1 Moderate: nasm Security Fixes and Updates

suse
Calendar Grey July 6, 2020
Dist Suse Esm H88
The recent patch addresses several concerns within nasm, significantly boosting speed and fortifying security measures for programming utilities in SUSE.
An update that solves 13 vulnerabilities and has one errata is now available

Summary

This update for nasm fixes the following issues: nasm was updated to version 2.14.02. This allows building of Mozilla Firefox 78ESR and also contains lots of bugfixes, security fixes and improvements. * Fix crash due to multiple errors or warnings during the code generation pass if a list file is specified. * Create all system-defined macros defore processing command-line given preprocessing directives (-p, -d, -u, --pragma, --before). * If debugging is enabled, define a __DEBUG_FORMAT__ predefined macro. See section 4.11.7. * Fix an assert for the case in the obj format when a SEG operator refers to an EXTERN symbol declared further down in the code. * Fix a corner case in the floating-point code where a binary, octal or hexadecimal floating-point having at least 32, 11, or 8 mantissa digits

References

#1084631 #1086186 #1086227 #1086228 #1090519

#1090840 #1106878 #1107592 #1107594 #1108404

#1115758 #1115774 #1115795 #1173538

Cross- CVE-2018-1000667 CVE-2018-10016 CVE-2018-10254

CVE-2018-10316 CVE-2018-16382 CVE-2018-16517

CVE-2018-16999 CVE-2018-19214 CVE-2018-19215

CVE-2018-19216 CVE-2018-8881 CVE-2018-8882

CVE-2018-8883

Affected Products:

SUSE Linux Enterprise Module for Development Tools 15-SP2

SUSE Linux Enterprise Module for Development Tools 15-SP1

https://www.suse.com/security/cve/CVE-2018-1000667.html

https://www.suse.com/security/cve/CVE-2018-10016.html

https://www.suse.com/security/cve/CVE-2018-10254.html

https://www.suse.com/security/cve/CVE-2018-10316.html

https://www.suse.com/security/cve/CVE-2018-16382.html

Announcement ID: SUSE-SU-2020:1843-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here