First published: Sat Jan 27 2018(Updated: )
The printDefineFont2 function (util/listfdb.c) in libming through 0.4.8 is vulnerable to a heap-based buffer overflow, which may allow attackers to cause a denial of service or unspecified other impact via a crafted FDB file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libming | <=0.4.8 | |
Debian Linux | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-6358 has a medium severity rating due to its potential for a heap-based buffer overflow that could lead to a denial of service.
To fix CVE-2018-6358, users should update their libming software to the latest version beyond 0.4.8 where the vulnerability is patched.
CVE-2018-6358 affects libming versions up to and including 0.4.8 and Debian Linux version 7.0.
An attacker can exploit CVE-2018-6358 to potentially cause a denial of service or achieve other unspecified impacts.
There are no specific workarounds for CVE-2018-6358, so updating to a secure version is strongly recommended.