Vulnerabilities > Libming > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-06-26 CVE-2019-12982 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Libming 0.4.8
Ming (aka libming) 0.4.8 has a heap buffer overflow and underflow in the decompileCAST function in util/decompile.c in libutil.a.
network
libming CWE-119
4.3
2019-06-26 CVE-2019-12981 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Libming 0.4.8
Ming (aka libming) 0.4.8 has an "fill overflow" vulnerability in the function SWFShape_setLeftFillStyle in blocks/shape.c.
network
libming CWE-119
6.8
2019-06-26 CVE-2019-12980 Integer Overflow or Wraparound vulnerability in Libming 0.4.8
In Ming (aka libming) 0.4.8, there is an integer overflow (caused by an out-of-range left shift) in the SWFInput_readSBits function in blocks/input.c.
network
libming CWE-190
4.3
2019-02-25 CVE-2019-9114 Out-of-bounds Write vulnerability in Libming Ming 0.4.8
Ming (aka libming) 0.4.8 has an out of bounds write vulnerability in the function strcpyext() in the decompile.c file in libutil.a.
network
libming CWE-787
6.8
2019-02-25 CVE-2019-9113 NULL Pointer Dereference vulnerability in Libming Ming 0.4.8
Ming (aka libming) 0.4.8 has a NULL pointer dereference in the function getString() in the decompile.c file in libutil.a.
network
libming CWE-476
6.8
2019-02-07 CVE-2019-7582 Allocation of Resources Without Limits or Throttling vulnerability in Libming
The readBytes function in util/read.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafted swf file that triggers a memory allocation failure.
6.8
2019-02-07 CVE-2019-7581 Allocation of Resources Without Limits or Throttling vulnerability in Libming
The parseSWF_ACTIONRECORD function in util/parser.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafted swf file that triggers a memory allocation failure, a different vulnerability than CVE-2018-7876.
6.8
2019-01-02 CVE-2019-3572 Out-of-bounds Read vulnerability in Libming 0.4.8
An issue was discovered in libming 0.4.8.
network
libming CWE-125
4.3
2018-12-30 CVE-2018-20591 Out-of-bounds Read vulnerability in Libming 0.4.8
A heap-based buffer over-read was discovered in decompileJUMP function in util/decompile.c of libming v0.4.8.
network
libming CWE-125
4.3
2018-12-24 CVE-2018-20429 NULL Pointer Dereference vulnerability in Libming 0.4.8
libming 0.4.8 has a NULL pointer dereference in the getName function of the decompile.c file, a different vulnerability than CVE-2018-7872 and CVE-2018-9165.
network
libming CWE-476
6.8