CVE-2018-8882: Improper Restriction of Operations within the Bounds of a Memory Buffer
(updated )
Netwide Assembler (NASM) rc2 has a stack-based buffer under-read in the function ieee_shr in asm/float.c via a large shift value.
References
Detect and mitigate CVE-2018-8882 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →