CVE-2018-8806: Use After Free
Published Mar 20, 2018
·Updated
In libming 0.4.8, there is a use-after-free in the decompileArithmeticOp function of decompile.c. Remote attackers could use this vulnerability to cause a denial-of-service via a crafted swf file.
Affected Software
1 affected component
Libming Libming=0.4.8
Event History
Mar 20, 2018
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Data Sourced
via NVD·05:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2018-8806?
CVE-2018-8806 is a vulnerability in libming 0.4.8 that allows remote attackers to cause a denial-of-service via a crafted swf file.
2
What is the severity of CVE-2018-8806?
The severity of CVE-2018-8806 is medium with a CVSS score of 6.5.
3
How does CVE-2018-8806 affect Libming?
CVE-2018-8806 affects Libming version 0.4.8.
4
How can I fix CVE-2018-8806?
To fix CVE-2018-8806, you should upgrade Libming to a version that is not affected by this vulnerability.
5
Where can I find more information about CVE-2018-8806?
You can find more information about CVE-2018-8806 at the following link: https://github.com/libming/libming/issues/128