libming

Do you want an email whenever new security vulnerabilities are reported in any libming product?

Products by libming Sorted by Most Security Vulnerabilities since 2018

 

libming Ming66 vulnerabilities
Ming is a library for generating Macromedia Flash files (.swf), written in C

 

libming Ming7 vulnerabilities

By the Year

In 2024 there have been 4 vulnerabilities in libming with an average score of 6.5 out of ten. Last year libming had 9 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in libming in 2024 could surpass last years number. Last year, the average CVE base score was greater by 0.80

Year Vulnerabilities Average Score
2024 4 6.50
2023 9 7.30
2022 7 6.50
2021 0 0.00
2020 4 8.38
2019 7 7.86
2018 42 7.37

It may take a day or so for new libming vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent libming Security Vulnerabilities

A memory leak issue discovered in parseSWF_TEXTRECORD in libming v0.4.8

CVE-2024-24150 6.5 - Medium - February 29, 2024

A memory leak issue discovered in parseSWF_TEXTRECORD in libming v0.4.8 allows attackers to cause a denial of service via a crafted SWF file.

Memory Leak

A memory leak issue discovered in parseSWF_DEFINEBUTTON in libming v0.4.8

CVE-2024-24146 6.5 - Medium - February 29, 2024

A memory leak issue discovered in parseSWF_DEFINEBUTTON in libming v0.4.8 allows attackers to cause s denial of service via a crafted SWF file.

Memory Leak

A memory leak issue discovered in parseSWF_GLYPHENTRY in libming v0.4.8

CVE-2024-24149 6.5 - Medium - February 29, 2024

A memory leak issue discovered in parseSWF_GLYPHENTRY in libming v0.4.8 allows attackers to cause a denial of service via a crafted SWF file.

Memory Leak

A memory leak issue discovered in parseSWF_FILLSTYLEARRAY in libming v0.4.8

CVE-2024-24147 6.5 - Medium - February 29, 2024

A memory leak issue discovered in parseSWF_FILLSTYLEARRAY in libming v0.4.8 allows attackers to cause s denial of service via a crafted SWF file.

Memory Leak

Buffer Overflow vulnerability in libming version 0.4.8

CVE-2023-50628 9.8 - Critical - December 20, 2023

Buffer Overflow vulnerability in libming version 0.4.8, allows attackers to execute arbitrary code and obtain sensitive information via parser.c component.

Classic Buffer Overflow

Buffer Overflow vulnerability in Libming Libming v.0.4.8

CVE-2023-40781 6.5 - Medium - August 28, 2023

Buffer Overflow vulnerability in Libming Libming v.0.4.8 allows a remote attacker to cause a denial of service via a crafted .swf file to the makeswf function.

Memory Corruption

libming listswf 0.4.7 was discovered to contain a buffer overflow in the parseSWF_DEFINEFONTINFO() function at parser.c.

CVE-2023-36239 8.8 - High - June 22, 2023

libming listswf 0.4.7 was discovered to contain a buffer overflow in the parseSWF_DEFINEFONTINFO() function at parser.c.

Classic Buffer Overflow

Buffer Overflow vulnerability found in Libming swftophp v.0.4.8

CVE-2023-30085 5.5 - Medium - May 09, 2023

Buffer Overflow vulnerability found in Libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via the cws2fws function in util/decompile.c.

Classic Buffer Overflow

Buffer Overflow vulnerability found in Libming swftophp v.0.4.8

CVE-2023-30083 5.5 - Medium - May 09, 2023

Buffer Overflow vulnerability found in Libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via the newVar_N in util/decompile.c.

Classic Buffer Overflow

An issue found in libming v.0.4.8

CVE-2021-31240 7.8 - High - May 09, 2023

An issue found in libming v.0.4.8 allows a local attacker to execute arbitrary code via the parseSWF_IMPORTASSETS function in the parser.c file.

Memory Leak

An issue found in libming swftophp v.0.4.8

CVE-2023-30084 5.5 - Medium - May 09, 2023

An issue found in libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via the stackVal function in util/decompile.c.

Out-of-bounds Read

libming v0.4.8 was discovered to contain a stack buffer overflow

CVE-2023-31976 8.8 - High - May 09, 2023

libming v0.4.8 was discovered to contain a stack buffer overflow via the function makeswf_preprocess at /util/makeswf_utils.c.

Memory Corruption

libming 0.4.8 0.4.8 is vulnerable to Buffer Overflow

CVE-2022-44232 7.5 - High - April 26, 2023

libming 0.4.8 0.4.8 is vulnerable to Buffer Overflow. In getInt() in decompile.c unknown type may lead to denial of service. This is a different vulnerability than CVE-2018-9132 and CVE-2018-20427.

Classic Buffer Overflow

Ming 0.4.8 has an out-of-bounds buffer access issue in the function decompileINCR_DECR() in decompiler.c file

CVE-2021-34340 6.5 - Medium - March 10, 2022

Ming 0.4.8 has an out-of-bounds buffer access issue in the function decompileINCR_DECR() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.

Memory Corruption

Ming 0.4.8 has an out-of-bounds buffer overwrite issue in the function getName() in decompiler.c file

CVE-2021-34338 6.5 - Medium - March 10, 2022

Ming 0.4.8 has an out-of-bounds buffer overwrite issue in the function getName() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.

Memory Corruption

Ming 0.4.8 has an out-of-bounds buffer access issue in the function getString() in decompiler.c file

CVE-2021-34339 6.5 - Medium - March 10, 2022

Ming 0.4.8 has an out-of-bounds buffer access issue in the function getString() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.

Memory Corruption

Ming 0.4.8 has an out-of-bounds read vulnerability in the function decompileIF() in the decompile.c file

CVE-2021-34341 6.5 - Medium - March 10, 2022

Ming 0.4.8 has an out-of-bounds read vulnerability in the function decompileIF() in the decompile.c file that causes a direct segmentation fault and leads to denial of service.

Out-of-bounds Read

Ming 0.4.8 has an out-of-bounds read vulnerability in the function newVar_N() in decompile.c

CVE-2021-34342 6.5 - Medium - March 10, 2022

Ming 0.4.8 has an out-of-bounds read vulnerability in the function newVar_N() in decompile.c which causes a huge information leak.

Out-of-bounds Read

In libming 0.4.8, the parseSWF_DEFINELOSSLESS2 function in util/parser.c lacks a boundary check

CVE-2021-44591 6.5 - Medium - January 06, 2022

In libming 0.4.8, the parseSWF_DEFINELOSSLESS2 function in util/parser.c lacks a boundary check that would lead to denial-of-service attacks via a crafted SWF file.

Allocation of Resources Without Limits or Throttling

In libming 0.4.8, a memory exhaustion vulnerability exist in the function cws2fws in util/main.c

CVE-2021-44590 6.5 - Medium - January 06, 2022

In libming 0.4.8, a memory exhaustion vulnerability exist in the function cws2fws in util/main.c. Remote attackers could launch denial of service attacks by submitting a crafted SWF file that exploits this vulnerability.

Allocation of Resources Without Limits or Throttling

Built by Foundeo Inc., with data from the National Vulnerability Database (NVD), Icons by Icons8. Privacy Policy. Use of this site is governed by the Legal Terms
Disclaimer
CONTENT ON THIS WEBSITE IS PROVIDED ON AN "AS IS" BASIS AND DOES NOT IMPLY ANY KIND OF GUARANTEE OR WARRANTY, INCLUDING THE WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR USE. YOUR USE OF THE INFORMATION ON THE DOCUMENT OR MATERIALS LINKED FROM THE DOCUMENT IS AT YOUR OWN RISK. Always check with your vendor for the most up to date, and accurate information.