Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-66233.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-66233
Upstream
Published
2025-08-11T11:15:27Z
Modified
2026-09-20T05:33:47Z
Summary
CVE-2025-8843 affecting package nasm 2.16.01-2
Details

A vulnerability was found in NASM Netwide Assember 2.17rc0. This affects the function macho_no_dead_strip of the file outmacho.c. The manipulation leads to heap-based buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.

References

Affected packages

Azure Linux:3 / nasm

Package

Name
nasm
Purl
pkg:rpm/azure-linux/nasm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Last Affected
2.16.01-2

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-66233.json"