CVE-2021-44591: Medium severity libming vulnerability
Published Jan 6, 2022
·Updated
In libming 0.4.8, the parseSWFDEFINELOSSLESS2 function in util/parser.c lacks a boundary check that would lead to denial-of-service attacks via a crafted SWF file.
Affected Software
1 affected component
Libming Libming=0.4.8
Event History
Jan 6, 2022
CVE Published
via MITRE·01:38 PM
Data Sourced
via MITRE·01:38 PM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-44591?
CVE-2021-44591 is a vulnerability in libming 0.4.8 that allows denial-of-service attacks via a crafted SWF file.
2
What is the severity of CVE-2021-44591?
The severity of CVE-2021-44591 is medium, with a CVSS score of 6.5.
3
How does CVE-2021-44591 affect libming?
CVE-2021-44591 affects libming 0.4.8.
4
How can CVE-2021-44591 be exploited?
CVE-2021-44591 can be exploited by using a crafted SWF file.
5
Is there a fix for CVE-2021-44591?
Yes, updating to a version of libming that is not affected by CVE-2021-44591 resolves this vulnerability.