CVE-2018-6359: Use After Free
Published Jan 27, 2018
·Updated
The decompileIF function (util/decompile.c) in libming through 0.4.8 is vulnerable to a use-after-free, which may allow attackers to cause a denial of service or unspecified other impact via a crafted SWF file.
Affected Software
2 affected components
Libming Libming<=0.4.8
Debian Debian Linux=7.0
Event History
Jan 27, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Data Sourced
via NVD·09:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-6359?
CVE-2018-6359 has been categorized as a potential denial-of-service vulnerability.
2
How do I fix CVE-2018-6359?
To fix CVE-2018-6359, upgrade libming to version 0.4.9 or later.
3
What causes the vulnerability in CVE-2018-6359?
CVE-2018-6359 is caused by a use-after-free flaw in the decompileIF function of libming.
4
Which software is affected by CVE-2018-6359?
CVE-2018-6359 affects libming versions up to and including 0.4.8 and Debian Linux 7.0.
5
What types of attacks can be performed using CVE-2018-6359?
Attackers can exploit CVE-2018-6359 by crafting a malicious SWF file to trigger a denial of service.