CVE-2017-8782

MEDIUM

Libming - Integer Overflow

Title source: rule

Description

The readString function in util/read.c and util/old/read.c in libming 0.4.8 allows remote attackers to cause a denial of service via a large file that is mishandled by listswf, listaction, etc. This occurs because of an integer overflow that leads to a memory allocation error.

Scores

CVSS v3 6.5
EPSS 0.0042
EPSS Percentile 61.6%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Details

CWE
CWE-190
Status published
Products (2)
libming/libming
n/a/n/a
Published May 31, 2017
Tracked Since Feb 18, 2026