Back to search
CVE-2026-6068
Published: Apr 10, 2026
Modified: May 20, 2026
PUBLISHED
Description
NASM contains a heap use after free vulnerability in response file (-@) processing where a dangling pointer to freed memory is stored in the global depend_file and later dereferenced, as the response-file buffer is freed before the pointer is used, allowing for data corruption or remote code execution.
| Vendor | Product | Versions |
|---|---|---|
NASM | NASM | affected nasm-3.02rc5 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now