CVE-2018-7877: Buffer Overflow
Published Mar 8, 2018
·Updated
There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 for DOUBLE data. A Crafted input will lead to a denial of service attack.
Affected Software
2 affected components
Libming Libming=0.4.8
Debian Debian Linux=7.0
Event History
Mar 8, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-7877?
The severity of CVE-2018-7877 is medium with a CVSS score of 6.5.
2
What is the affected software of CVE-2018-7877?
The affected software of CVE-2018-7877 is Libming version 0.4.8 and Debian Linux version 7.0.
3
What is the vulnerability type of CVE-2018-7877?
The vulnerability type of CVE-2018-7877 is a heap-based buffer overflow.
4
How can CVE-2018-7877 be exploited?
CVE-2018-7877 can be exploited by providing a crafted input to the getString function of util/decompile.c in libming 0.4.8 for DOUBLE data.
5
Are there any known fixes for CVE-2018-7877?
There are no known fixes for CVE-2018-7877 at this time.