First published: Thu Feb 20 2025(Updated: )
A memory leak has been identified in the parseSWF_IMPORTASSETS2 function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libming |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-26307 is classified as a moderate severity vulnerability due to its potential for causing denial of service.
To fix CVE-2025-26307, you should upgrade to the latest version of libming that addresses the memory leak issue.
CVE-2025-26307 affects applications that utilize the libming library for parsing SWF files.
Exploiting CVE-2025-26307 can lead to a denial of service by consuming memory resources through specially crafted SWF files.
The vendor for CVE-2025-26307 is libming, an open-source project used for handling SWF file manipulation.