CVE-2018-7867: Buffer Overflow
Published Mar 8, 2018
·Updated
There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 during a RegisterNumber sprintf. A Crafted input will lead to a denial of service attack.
Affected Software
2 affected components
Libming Libming=0.4.8
Debian Debian Linux=7.0
Event History
Mar 8, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-7867?
CVE-2018-7867 is classified as a critical vulnerability due to its ability to cause a denial of service through heap-based buffer overflow.
2
How do I fix CVE-2018-7867?
To mitigate CVE-2018-7867, upgrade to a patched version of libming that addresses the vulnerability.
3
Which software versions are affected by CVE-2018-7867?
CVE-2018-7867 specifically affects libming version 0.4.8 and Debian Linux version 7.0.
4
What type of attack can CVE-2018-7867 facilitate?
CVE-2018-7867 can facilitate a denial of service attack due to a heap-based buffer overflow in a critical function.
5
Where does the vulnerability CVE-2018-7867 occur?
The vulnerability CVE-2018-7867 occurs in the getString function of util/decompile.c in the libming library.