In libming 0.4.8, the parseSWF_DEFINELOSSLESS2 function in util/parser.c lacks a boundary check that would lead to denial-of-service attacks via a crafted SWF file.
References
Link | Resource |
---|---|
https://github.com/libming/libming/issues/235 | Exploit Third Party Advisory |
https://github.com/libming/libming | Third Party Advisory |
Configurations
Information
Published : 2022-01-06 06:15
Updated : 2022-01-13 04:52
NVD link : CVE-2021-44591
Mitre link : CVE-2021-44591
JSON object : View
CWE
CWE-770
Allocation of Resources Without Limits or Throttling
Products Affected
libming
- libming