CVE-2018-6315: Integer Overflow
Published Jan 25, 2018
·Updated
The outputSWFTEXTRECORD function (util/outputscript.c) in libming through 0.4.8 is vulnerable to an integer overflow and resultant out-of-bounds read, which may allow attackers to cause a denial of service or unspecified other impact via a crafted SWF file.
Affected Software
2 affected components
Libming Libming<=0.4.8
Debian Debian Linux=7.0
Event History
Jan 25, 2018
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
via NVD·10:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-6315?
CVE-2018-6315 is considered a moderate severity vulnerability due to its ability to cause denial of service.
2
How do I fix CVE-2018-6315?
To mitigate CVE-2018-6315, upgrade libming to version 0.4.9 or later where the vulnerability has been addressed.
3
What software is affected by CVE-2018-6315?
CVE-2018-6315 affects libming versions up to 0.4.8 and Debian Linux 7.0.
4
What type of vulnerability is CVE-2018-6315?
CVE-2018-6315 is an integer overflow vulnerability that may lead to out-of-bounds read.
5
Can CVE-2018-6315 be exploited remotely?
Yes, CVE-2018-6315 can be exploited remotely via a crafted SWF file.