CVE-2018-8807: Use After Free
Published Mar 20, 2018
·Updated
In libming 0.4.8, these is a use-after-free in the function decompileCALLFUNCTION of decompile.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted swf file.
Affected Software
1 affected component
Libming Libming=0.4.8
Event History
Mar 20, 2018
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Data Sourced
via NVD·05:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2018-8807?
CVE-2018-8807 is a vulnerability in libming 0.4.8 that allows remote attackers to cause a denial of service via a crafted swf file.
2
How severe is CVE-2018-8807?
CVE-2018-8807 has a severity rating of 6.5 (medium).
3
Which software version is affected by CVE-2018-8807?
CVE-2018-8807 affects libming version 0.4.8.
4
How can an attacker exploit CVE-2018-8807?
An attacker can exploit CVE-2018-8807 by leveraging a use-after-free vulnerability in libming's decompileCALLFUNCTION function.
5
Is there a fix available for CVE-2018-8807?
It is recommended to upgrade to a version of libming that does not contain the vulnerability (0.4.9 or later).