First published: Wed Jan 02 2019(Updated: )
An issue was discovered in libming 0.4.8. There is a heap-based buffer over-read in the function writePNG in the file util/dbl2png.c of the dbl2png command-line program. Because this is associated with an erroneous call to png_write_row in libpng, an out-of-bounds write might occur for some memory layouts.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libming Libming | =0.4.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-3572 is a vulnerability in libming 0.4.8 that allows for a heap-based buffer over-read, leading to potential out-of-bounds write.
The vulnerability affects libming 0.4.8.
The severity of CVE-2019-3572 is medium with a CVSS score of 6.5.
To fix CVE-2019-3572, update libming to a version that does not contain the vulnerability.
More information about CVE-2019-3572 can be found at this link: https://github.com/libming/libming/issues/169