CVE-2018-8964: Use After Free
Published Mar 23, 2018
·Updated
In libming 0.4.8, the decompileDELETE function of decompile.c has a use-after-free. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted swf file.
Affected Software
1 affected component
Libming Libming=0.4.8
Event History
Mar 23, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Data Sourced
via NVD·09:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-8964.
2
What is the severity rating of CVE-2018-8964?
CVE-2018-8964 has a severity rating of 6.5 (medium).
3
What is the affected software version for CVE-2018-8964?
The affected software version for CVE-2018-8964 is libming 0.4.8.
4
How can remote attackers exploit CVE-2018-8964?
Remote attackers can exploit CVE-2018-8964 by leveraging the use-after-free vulnerability in the decompileDELETE function of decompile.c in libming 0.4.8.
5
How can CVE-2018-8964 be mitigated?
To mitigate CVE-2018-8964, it is recommended to update to a version of libming that is not affected by the vulnerability.