Skip to content
Noroxi

libming records

124 published records for vendor libming.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
30.6%
Median publish → KEV
No record has entered KEV

All records

124 records
  • Buffer Overflow vulnerability in libming version 0.4.8, allows attackers to execute arbitrary code and obtain sensitive information via pars

    CriticalCVSS 9.8No exploitEPSS 1%

    libming · libmingDec 20, 2023

  • Ming (aka libming) 0.4.8 has a heap-based buffer over-read (8 bytes) in the function decompileIF() in decompile.c.

    CriticalCVSS 9.1No exploitEPSS 2%

    libming · libmingApr 19, 2020

  • Ming (aka libming) 0.4.8 has a heap-based buffer over-read (2 bytes) in the function decompileIF() in decompile.c.

    CriticalCVSS 9.1No exploitEPSS 2%

    libming · libmingApr 19, 2020

  • Ming (aka libming) 0.4.8 has an out of bounds read vulnerability in the function OpCode() in the decompile.c file in libutil.a.

    CriticalCVSS 9.1No exploitEPSS 2%

    libming · libmingSep 23, 2019

  • CVE-2018-6315
    36Monitor

    The outputSWF_TEXT_RECORD function (util/outputscript.c) in libming through 0.4.8 is vulnerable to an integer overflow and resultant out-of-

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingJan 25, 2018

  • CVE-2018-6359
    36Monitor

    The decompileIF function (util/decompile.c) in libming through 0.4.8 is vulnerable to a use-after-free, which may allow attackers to cause a

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingJan 27, 2018

  • CVE-2019-7582
    36Monitor

    The readBytes function in util/read.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafted swf file tha

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingFeb 7, 2019

  • CVE-2019-7581
    36Monitor

    The parseSWF_ACTIONRECORD function in util/parser.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafte

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingFeb 7, 2019

  • The dcputs function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingMay 17, 2018

  • CVE-2018-6358
    36Monitor

    The printDefineFont2 function (util/listfdb.c) in libming through 0.4.8 is vulnerable to a heap-based buffer overflow, which may allow attac

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingJan 27, 2018

  • CVE-2018-9009
    36Monitor

    In libming 0.4.8, there is a use-after-free in the decompileJUMP function of the decompile.c file.

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingMar 24, 2018

  • The decompileJUMP function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingMay 14, 2018

  • The decompileSETTARGET function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingMay 14, 2018

  • The getString function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actu

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingMay 17, 2018

  • CVE-2018-7871
    36Monitor

    There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT16 data.

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingMar 8, 2018

  • CVE-2020-6628
    35Monitor

    Ming (aka libming) 0.4.8 has a heap-based buffer over-read in the function decompile_SWITCH() in decompile.c.

    HighCVSS 8.8No exploitEPSS 2%

    libming · libmingJan 8, 2020

  • libming 0.4.8 has a NULL pointer dereference in the newVar3 function of the decompile.c file, a different vulnerability than CVE-2018-7866.

    HighCVSS 8.8No exploitEPSS 1%

    libming · libmingDec 24, 2018

  • libming 0.4.8 has a NULL pointer dereference in the strlenext function of the decompile.c file, a different vulnerability than CVE-2018-7874

    HighCVSS 8.8No exploitEPSS 1%

    libming · libmingDec 24, 2018

  • libming 0.4.8 has a NULL pointer dereference in the pushdup function of the decompile.c file.

    HighCVSS 8.8No exploitEPSS 1%

    libming · libmingDec 24, 2018

  • libming 0.4.8 has a NULL pointer dereference in the getName function of the decompile.c file, a different vulnerability than CVE-2018-7872 a

    HighCVSS 8.8No exploitEPSS 1%

    libming · libmingDec 24, 2018

  • CVE-2019-9113
    35Monitor

    Ming (aka libming) 0.4.8 has a NULL pointer dereference in the function getString() in the decompile.c file in libutil.a.

    HighCVSS 8.8No exploitEPSS 1%

    libming · mingFeb 25, 2019

  • The newVar_N function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actua

    HighCVSS 8.8No exploitEPSS 1%

    libming · libmingMay 13, 2018

  • CVE-2019-9114
    35Monitor

    Ming (aka libming) 0.4.8 has an out of bounds write vulnerability in the function strcpyext() in the decompile.c file in libutil.a.

    HighCVSS 8.8No exploitEPSS 1%

    libming · mingFeb 25, 2019

  • Ming (aka libming) 0.4.8 has an "fill overflow" vulnerability in the function SWFShape_setLeftFillStyle in blocks/shape.c.

    HighCVSS 8.8No exploitEPSS 1%

    libming · libmingJun 26, 2019

  • libming 0.4.8 has a NULL pointer dereference in the getInt function of the decompile.c file, a different vulnerability than CVE-2018-9132.

    HighCVSS 8.8No exploitEPSS 1%

    libming · libmingDec 24, 2018