There is a memory leak in util/parser.c in libming 0.4.8, which will lead to a denial of service via parseSWF_DEFINEBUTTON2, parseSWF_DEFINEFONT, parseSWF_DEFINEFONTINFO, parseSWF_DEFINELOSSLESS, parseSWF_DEFINESPRITE, parseSWF_DEFINETEXT, parseSWF_DOACTION, parseSWF_FILLSTYLEARRAY, parseSWF_FRAMELABEL, parseSWF_LINESTYLEARRAY, parseSWF_PLACEOBJECT2, or parseSWF_SHAPEWITHSTYLE.
References
Link | Resource |
---|---|
https://github.com/libming/libming/issues/146 | Vendor Advisory |
https://github.com/libming/libming/issues/146 | Vendor Advisory |
Configurations
History
21 Nov 2024, 03:46
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/libming/libming/issues/146 - Vendor Advisory |
Information
Published : 2018-07-02 17:29
Updated : 2024-11-21 03:46
NVD link : CVE-2018-13066
Mitre link : CVE-2018-13066
CVE.ORG link : CVE-2018-13066
JSON object : View
Products Affected
libming
- libming
CWE
CWE-772
Missing Release of Resource after Effective Lifetime