CVE-2018-7871: High severity Libming Libming vulnerability
Published Mar 8, 2018
·Updated
There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT16 data. A crafted input will lead to a denial of service or possibly unspecified other impact.
Affected Software
2 affected components
Libming Libming=0.4.8
Debian Debian Linux=7.0
Event History
Mar 8, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-7871?
CVE-2018-7871 has been classified with a severity that may lead to denial of service and other unspecified impacts.
2
How do I fix CVE-2018-7871?
To fix CVE-2018-7871, it is recommended to update libming to version 0.4.9 or later.
3
What are the potential impacts of CVE-2018-7871?
CVE-2018-7871 can cause a heap-based buffer over-read leading to a denial of service.
4
Which versions of libming are affected by CVE-2018-7871?
CVE-2018-7871 specifically affects libming version 0.4.8.
5
Does CVE-2018-7871 affect any other software apart from libming?
Yes, CVE-2018-7871 is also reported to affect Debian GNU/Linux version 7.0.