Back
CVE-2004-1287
Buffer overflow in the error function in preproc.c for NASM 0.98.38 1.2 allows attackers to execute arbitrary code via a crafted asm file, a different vulnerability than CVE-2005-1194.
Published: Jan 10, 2005
Modified: Jun 16, 2026
CWE-787
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| nasm | netwide_assembler | 0.98.38 |
GitHub Security Advisory GHSA-vq2p-3c23-ghfm
Buffer overflow in the error function in preproc.c for NASM 0.98.38 1.2 allows attackers to...
References (8)
- http://tigger.uic.edu/~jlongs2/holes/nasm.txt Exploit, Vendor Advisory
- http://www.redhat.com/support/errata/RHSA-2005-381.html Not Applicable
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18540 Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11299 Broken Link
- http://tigger.uic.edu/~jlongs2/holes/nasm.txt Exploit, Vendor Advisory
- http://www.redhat.com/support/errata/RHSA-2005-381.html Not Applicable
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18540 Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11299 Broken Link
Risk Scores
CVSS Score
10.0 / 10
EPSS Score
17.88%
Top 3% most likely to be exploited
Threat Score
45.4 / 100
Data Sources
NVD
EPSS
GitHub