There is a memory leak in util/parser.c in libming 0.4.8, which will lead to a denial of service via parseSWF_DEFINEBUTTON2, parseSWF_DEFINEFONT, parseSWF_DEFINEFONTINFO, parseSWF_DEFINELOSSLESS, parseSWF_DEFINESPRITE, parseSWF_DEFINETEXT, parseSWF_DOACTION, parseSWF_FILLSTYLEARRAY, parseSWF_FRAMELABEL, parseSWF_LINESTYLEARRAY, parseSWF_PLACEOBJECT2, or parseSWF_SHAPEWITHSTYLE.
References
Link | Resource |
---|---|
https://github.com/libming/libming/issues/146 | Vendor Advisory |
Configurations
Information
Published : 2018-07-02 10:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-13066
Mitre link : CVE-2018-13066
JSON object : View
CWE
CWE-772
Missing Release of Resource after Effective Lifetime
Products Affected
libming
- libming