CVE-2025-26306: Medium severity Libming Libming vulnerability
Published Feb 20, 2025
·Updated
A memory leak has been identified in the readSizedString function in util/read.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted file.
Affected Software
2 affected components
Libming Libming
Libming Libming=0.4.8
Event History
Feb 20, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-26306?
CVE-2025-26306 has been deemed a medium severity vulnerability due to its potential for causing a denial of service.
2
How do I fix CVE-2025-26306?
To mitigate CVE-2025-26306, ensure you update to the latest version of libming where this vulnerability is addressed.
3
What systems are affected by CVE-2025-26306?
CVE-2025-26306 affects all versions of libming prior to v0.4.9.
4
Can CVE-2025-26306 lead to data loss?
CVE-2025-26306 primarily causes a denial of service, but it does not directly lead to data loss.
5
What kind of attack can exploit CVE-2025-26306?
CVE-2025-26306 can be exploited by attackers using crafted files to trigger a memory leak in the readSizedString function.