CVE-2025-26311: Medium severity Libming Libming vulnerability
Published Feb 20, 2025
·Updated
Multiple memory leaks have been identified in the clip actions parsing functions (parseSWFCLIPACTIONS and parseSWFCLIPACTIONRECORD) in util/parser.c of libming v0.4.8, which allow attackers to cause a denial of service via a crafted SWF file.
Affected Software
2 affected components
Libming Libming
Libming Libming=0.4.8
Event History
Feb 20, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-26311?
CVE-2025-26311 is classified as a denial of service vulnerability due to memory leaks.
2
How can I fix CVE-2025-26311?
To fix CVE-2025-26311, update to the latest version of libming, where the memory leak has been addressed.
3
What are the potential impacts of CVE-2025-26311?
The potential impact of CVE-2025-26311 includes service disruptions due to the denial of service caused by crafted SWF files.
4
Which software is affected by CVE-2025-26311?
The vulnerability affects libming version 0.4.8 and possibly earlier versions.
5
How can attackers exploit CVE-2025-26311?
Attackers can exploit CVE-2025-26311 by using specially crafted SWF files to trigger memory leaks.