First published: Thu Feb 20 2025(Updated: )
A memory leak has been identified in the readSizedString function in util/read.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libming |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-26306 has been deemed a medium severity vulnerability due to its potential for causing a denial of service.
To mitigate CVE-2025-26306, ensure you update to the latest version of libming where this vulnerability is addressed.
CVE-2025-26306 affects all versions of libming prior to v0.4.9.
CVE-2025-26306 primarily causes a denial of service, but it does not directly lead to data loss.
CVE-2025-26306 can be exploited by attackers using crafted files to trigger a memory leak in the readSizedString function.