First published: Sun Dec 30 2018(Updated: )
A heap-based buffer over-read was discovered in decompileJUMP function in util/decompile.c of libming v0.4.8. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by swftocxx.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libming Libming | =0.4.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-20591 is medium, with a severity value of 6.5.
The affected software for CVE-2018-20591 is Libming v0.4.8.
The CWE ID of CVE-2018-20591 is 125.
CVE-2018-20591 can be exploited by providing a crafted input that causes segmentation faults in the decompileJUMP function of libming v0.4.8.
At the moment, there is no known fix available for CVE-2018-20591. It is recommended to follow the recommendations provided by the vendor or project maintainers.