Hamid Zamani discovered multiple security problems (buffer overflows, format string vulnerabilities and missing input sanitising), which could lead to the execution of arbitrary code. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2771-1
The new NASM packages contain fixes for CAN-2004-1287 and one additional vsprintf buffer overflow.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-322 2005-04-18 ---------------------------------------------------------------------Product : Fedora Core 3 Name : nasm Version : 0.98.38 Release : 3.FC3 Summary : A portable x86 assembler which uses Intel-like syntax. Description : NASM is the Netwide Assembler, a free portable assembler for the Intel 80x86 microprocessor series, using primarily the traditional Intel instruction mnemonics and syntax. ---------------------------------------------------------------------Update Information: The new NASM packages contain fixes for CAN-2004-1287 and one additional vsprintf buffer overflow. For more information please see: . ---------------------------------------------------------------------* Fri Apr 15 2005 Jindrich Novy 0.98.38-3.FC3 - add patch to fix vsprintf buffer overflows - CAN-2004-1287 (#143052) ---------------------------------------------------------------------This update can be downloaded from: 0c501eeaed48949e75be777e000df8af SRPMS/nasm-0.98.38-3.FC3.src.rpm 309afb90270982e80925cd2269afdd7d x86_64/nasm-0.98.38-3.FC3.x86_64.rpm 62ec98a51cd0099827116c5a7435026e x86_64/nasm-doc-0.98.38-3.FC3.x86_64.rpm e6accacf750d4330334aa4d4f5502cab x86_64/nasm-rdoff-0.98.38-3.FC3.x86_64.rpm ccc0c4aeaed2c9128fd202bb87c321d2 x86_64/debug/nasm-debuginfo-0.98.38-3.FC3.x86_64.rpm d54efd975d0a984d1c077b7f873d65d0 i386/nasm-0.98.38-3.FC3.i386.rpm 923433c25cf347a41c7a82b1bada81d2 i386/nasm-doc-0.98.38-3.FC3.i386.rpm 887fa7e6006c5e2e6c47a59b74cd9d23 i386/nasm-rdoff-0.98.38-3.FC3.i386.rpm 4967884812da6f041c025546afa81a8b i386/debug/nasm-debuginfo-0.98.38-3.FC3.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date'command. -----------------------------------------------------------------------fedora-announce-list mailing list
Get the latest Linux and open source security news straight to your inbox.