CVE-2018-6358: Buffer Overflow
The printDefineFont2 function (util/listfdb.c) in libming through 0.4.8 is vulnerable to a heap-based buffer overflow, which may allow attackers to cause a denial of service or unspecified other impact via a crafted FDB file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-6358?
CVE-2018-6358 has a medium severity rating due to its potential for a heap-based buffer overflow that could lead to a denial of service.
How do I fix CVE-2018-6358?
To fix CVE-2018-6358, users should update their libming software to the latest version beyond 0.4.8 where the vulnerability is patched.
Which software versions are affected by CVE-2018-6358?
CVE-2018-6358 affects libming versions up to and including 0.4.8 and Debian Linux version 7.0.
What can an attacker achieve with CVE-2018-6358?
An attacker can exploit CVE-2018-6358 to potentially cause a denial of service or achieve other unspecified impacts.
Is there a workaround for CVE-2018-6358 if I cannot update?
There are no specific workarounds for CVE-2018-6358, so updating to a secure version is strongly recommended.