First published: Wed Jun 26 2019(Updated: )
Ming (aka libming) 0.4.8 has a heap buffer overflow and underflow in the decompileCAST function in util/decompile.c in libutil.a. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted SWF file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libming Libming | =0.4.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-12982 is a vulnerability in Ming (aka libming) version 0.4.8 that allows remote attackers to cause a denial of service via a crafted SWF file.
The severity of CVE-2019-12982 is medium with a CVSS score of 6.5.
CVE-2019-12982 affects Libming Libming 0.4.8 by causing a heap buffer overflow and underflow in the decompileCAST function in util/decompile.c in libutil.a.
Remote attackers can exploit CVE-2019-12982 by leveraging the vulnerability to cause a denial of service through a crafted SWF file.
Yes, a fix for CVE-2019-12982 is included in the commit da9d86eab55cbf608d5c916b8b690f5b76bca462.