CVE-2018-5294: Integer Overflow
Published Jan 8, 2018
·Updated
In libming 0.4.8, there is an integer overflow (caused by an out-of-range left shift) in the readUInt32 function (util/read.c). Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted swf file.
Affected Software
2 affected components
Libming Libming=0.4.8
Debian Debian Linux=7.0
Event History
Jan 8, 2018
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-5294?
CVE-2018-5294 is classified as a medium severity vulnerability due to its potential to cause denial-of-service.
2
How do I fix CVE-2018-5294?
To fix CVE-2018-5294, upgrade libming to version 0.4.9 or later where the vulnerability is patched.
3
What types of attacks can exploit CVE-2018-5294?
CVE-2018-5294 can be exploited by remote attackers through specially crafted SWF files.
4
Which software versions are affected by CVE-2018-5294?
CVE-2018-5294 affects libming version 0.4.8 and Debian GNU/Linux version 7.0.
5
What is the impact of CVE-2018-5294?
The impact of CVE-2018-5294 is primarily a denial-of-service condition, which can disrupt service availability.