CVE-2021-31240: High severity libming vulnerability
Published May 9, 2023
·Updated
An issue found in libming v.0.4.8 allows a local attacker to execute arbitrary code via the parseSWFIMPORTASSETS function in the parser.c file.
Affected Software
1 affected component
Libming Libming=0.4.8
Event History
May 9, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-31240.
2
What is the severity of CVE-2021-31240?
The severity of CVE-2021-31240 is high (CVSS score 7.8).
3
How can a local attacker exploit CVE-2021-31240?
A local attacker can exploit CVE-2021-31240 by executing arbitrary code using the parseSWF_IMPORTASSETS function in the parser.c file of libming v.0.4.8.
4
Which version of libming is affected by CVE-2021-31240?
The version affected by CVE-2021-31240 is libming v.0.4.8.
5
Is there a fix available for CVE-2021-31240?
There is no specific fix available for CVE-2021-31240. It is recommended to update to a patched version of libming or implement relevant mitigations provided by the software vendor.