In Netwide Assembler (NASM) 2.14.02, there is a use-after-free in paste_tokens in asm/preproc.c. Reference: https://bugzilla.nasm.us/show_bug.cgi?id=3392556
Created nasm tracking bugs for this issue: Affects: fedora-all [bug 1677637]
Statement: This issue affects the versions of nasm as shipped with Red Hat Enterprise Linux 6 and 7. Red Hat Enterprise Linux 6 is now in Maintenance Support 2 Phase of the support and maintenance life cycle. This has been rated as having a security impact of Low, and is not currently planned to be addressed in future updates. For additional information, refer to the Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/. This issue did not affect the versions of nasm as shipped with Red Hat Enterprise Linux 5.