libming records
124 published records for vendor libming.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 30.6%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-125 Out-of-bounds Read22
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer21
- CWE-476 NULL Pointer Dereference18
- CWE-401 Missing Release of Memory after Effective Lifetime12
- CWE-416 Use After Free8
- CWE-787 Out-of-bounds Write7
The weakness classes this vendor ships most often: where to look.
CWEAll records
124 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2023-50628No exploit | Buffer Overflow vulnerability in libming version 0.4.8, allows attackers to execute arbitrary code and obtain sensitive information via parslibming · libming · CWE-120 | Critical9.8 | — | 1.3% | Dec 20, 2023 |
37Monitor | CVE-2020-11894No exploit | Ming (aka libming) 0.4.8 has a heap-based buffer over-read (8 bytes) in the function decompileIF() in decompile.c.libming · libming · CWE-125 | Critical9.1 | — | 1.7% | Apr 19, 2020 |
37Monitor | CVE-2020-11895No exploit | Ming (aka libming) 0.4.8 has a heap-based buffer over-read (2 bytes) in the function decompileIF() in decompile.c.libming · libming · CWE-125 | Critical9.1 | — | 1.7% | Apr 19, 2020 |
37Monitor | CVE-2019-16705No exploit | Ming (aka libming) 0.4.8 has an out of bounds read vulnerability in the function OpCode() in the decompile.c file in libutil.a.libming · libming · CWE-125 | Critical9.1 | — | 1.7% | Sep 23, 2019 |
36Monitor | CVE-2018-6315No exploit | The outputSWF_TEXT_RECORD function (util/outputscript.c) in libming through 0.4.8 is vulnerable to an integer overflow and resultant out-of-libming · libming · CWE-125 | High8.8 | — | 2.5% | Jan 25, 2018 |
36Monitor | CVE-2018-6359No exploit | The decompileIF function (util/decompile.c) in libming through 0.4.8 is vulnerable to a use-after-free, which may allow attackers to cause alibming · libming · CWE-416 | High8.8 | — | 2.4% | Jan 27, 2018 |
36Monitor | CVE-2019-7582No exploit | The readBytes function in util/read.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafted swf file thalibming · libming · CWE-770 | High8.8 | — | 2.2% | Feb 7, 2019 |
36Monitor | CVE-2019-7581No exploit | The parseSWF_ACTIONRECORD function in util/parser.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a craftelibming · libming · CWE-770 | High8.8 | — | 2.1% | Feb 7, 2019 |
36Monitor | CVE-2018-11225No exploit | The dcputs function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual libming · libming · CWE-119 | High8.8 | — | 1.9% | May 17, 2018 |
36Monitor | CVE-2018-6358No exploit | The printDefineFont2 function (util/listfdb.c) in libming through 0.4.8 is vulnerable to a heap-based buffer overflow, which may allow attaclibming · libming · CWE-787 | High8.8 | — | 1.9% | Jan 27, 2018 |
36Monitor | CVE-2018-9009No exploit | In libming 0.4.8, there is a use-after-free in the decompileJUMP function of the decompile.c file.libming · libming · CWE-416 | High8.8 | — | 1.9% | Mar 24, 2018 |
36Monitor | CVE-2018-11095No exploit | The decompileJUMP function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the libming · libming · CWE-119 | High8.8 | — | 1.8% | May 14, 2018 |
36Monitor | CVE-2018-11100No exploit | The decompileSETTARGET function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater thanlibming · libming · CWE-119 | High8.8 | — | 1.8% | May 14, 2018 |
36Monitor | CVE-2018-11226No exploit | The getString function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actulibming · libming · CWE-119 | High8.8 | — | 1.7% | May 17, 2018 |
36Monitor | CVE-2018-7871No exploit | There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT16 data.libming · libming · CWE-125 | High8.8 | — | 1.7% | Mar 8, 2018 |
35Monitor | CVE-2020-6628No exploit | Ming (aka libming) 0.4.8 has a heap-based buffer over-read in the function decompile_SWITCH() in decompile.c.libming · libming · CWE-125 | High8.8 | — | 1.5% | Jan 8, 2020 |
35Monitor | CVE-2018-20426No exploit | libming 0.4.8 has a NULL pointer dereference in the newVar3 function of the decompile.c file, a different vulnerability than CVE-2018-7866.libming · libming · CWE-476 | High8.8 | — | 1.5% | Dec 24, 2018 |
35Monitor | CVE-2018-20428No exploit | libming 0.4.8 has a NULL pointer dereference in the strlenext function of the decompile.c file, a different vulnerability than CVE-2018-7874libming · libming · CWE-476 | High8.8 | — | 1.5% | Dec 24, 2018 |
35Monitor | CVE-2018-20425No exploit | libming 0.4.8 has a NULL pointer dereference in the pushdup function of the decompile.c file.libming · libming · CWE-476 | High8.8 | — | 1.5% | Dec 24, 2018 |
35Monitor | CVE-2018-20429No exploit | libming 0.4.8 has a NULL pointer dereference in the getName function of the decompile.c file, a different vulnerability than CVE-2018-7872 alibming · libming · CWE-476 | High8.8 | — | 1.5% | Dec 24, 2018 |
35Monitor | CVE-2019-9113No exploit | Ming (aka libming) 0.4.8 has a NULL pointer dereference in the function getString() in the decompile.c file in libutil.a.libming · ming · CWE-476 | High8.8 | — | 1.4% | Feb 25, 2019 |
35Monitor | CVE-2018-11017No exploit | The newVar_N function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actualibming · libming · CWE-119 | High8.8 | — | 1.4% | May 13, 2018 |
35Monitor | CVE-2019-9114No exploit | Ming (aka libming) 0.4.8 has an out of bounds write vulnerability in the function strcpyext() in the decompile.c file in libutil.a.libming · ming · CWE-787 | High8.8 | — | 1.3% | Feb 25, 2019 |
35Monitor | CVE-2019-12981No exploit | Ming (aka libming) 0.4.8 has an "fill overflow" vulnerability in the function SWFShape_setLeftFillStyle in blocks/shape.c.libming · libming · CWE-20 | High8.8 | — | 1.3% | Jun 26, 2019 |
35Monitor | CVE-2018-20427No exploit | libming 0.4.8 has a NULL pointer dereference in the getInt function of the decompile.c file, a different vulnerability than CVE-2018-9132.libming · libming · CWE-476 | High8.8 | — | 1.3% | Dec 24, 2018 |
- CVE-2023-5062839Monitor
Buffer Overflow vulnerability in libming version 0.4.8, allows attackers to execute arbitrary code and obtain sensitive information via pars
CriticalCVSS 9.8No exploitEPSS 1%libming · libmingDec 20, 2023
- CVE-2020-1189437Monitor
Ming (aka libming) 0.4.8 has a heap-based buffer over-read (8 bytes) in the function decompileIF() in decompile.c.
CriticalCVSS 9.1No exploitEPSS 2%libming · libmingApr 19, 2020
- CVE-2020-1189537Monitor
Ming (aka libming) 0.4.8 has a heap-based buffer over-read (2 bytes) in the function decompileIF() in decompile.c.
CriticalCVSS 9.1No exploitEPSS 2%libming · libmingApr 19, 2020
- CVE-2019-1670537Monitor
Ming (aka libming) 0.4.8 has an out of bounds read vulnerability in the function OpCode() in the decompile.c file in libutil.a.
CriticalCVSS 9.1No exploitEPSS 2%libming · libmingSep 23, 2019
- CVE-2018-631536Monitor
The outputSWF_TEXT_RECORD function (util/outputscript.c) in libming through 0.4.8 is vulnerable to an integer overflow and resultant out-of-
HighCVSS 8.8No exploitEPSS 2%libming · libmingJan 25, 2018
- CVE-2018-635936Monitor
The decompileIF function (util/decompile.c) in libming through 0.4.8 is vulnerable to a use-after-free, which may allow attackers to cause a
HighCVSS 8.8No exploitEPSS 2%libming · libmingJan 27, 2018
- CVE-2019-758236Monitor
The readBytes function in util/read.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafted swf file tha
HighCVSS 8.8No exploitEPSS 2%libming · libmingFeb 7, 2019
- CVE-2019-758136Monitor
The parseSWF_ACTIONRECORD function in util/parser.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafte
HighCVSS 8.8No exploitEPSS 2%libming · libmingFeb 7, 2019
- CVE-2018-1122536Monitor
The dcputs function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual
HighCVSS 8.8No exploitEPSS 2%libming · libmingMay 17, 2018
- CVE-2018-635836Monitor
The printDefineFont2 function (util/listfdb.c) in libming through 0.4.8 is vulnerable to a heap-based buffer overflow, which may allow attac
HighCVSS 8.8No exploitEPSS 2%libming · libmingJan 27, 2018
- CVE-2018-900936Monitor
In libming 0.4.8, there is a use-after-free in the decompileJUMP function of the decompile.c file.
HighCVSS 8.8No exploitEPSS 2%libming · libmingMar 24, 2018
- CVE-2018-1109536Monitor
The decompileJUMP function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the
HighCVSS 8.8No exploitEPSS 2%libming · libmingMay 14, 2018
- CVE-2018-1110036Monitor
The decompileSETTARGET function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than
HighCVSS 8.8No exploitEPSS 2%libming · libmingMay 14, 2018
- CVE-2018-1122636Monitor
The getString function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actu
HighCVSS 8.8No exploitEPSS 2%libming · libmingMay 17, 2018
- CVE-2018-787136Monitor
There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT16 data.
HighCVSS 8.8No exploitEPSS 2%libming · libmingMar 8, 2018
- CVE-2020-662835Monitor
Ming (aka libming) 0.4.8 has a heap-based buffer over-read in the function decompile_SWITCH() in decompile.c.
HighCVSS 8.8No exploitEPSS 2%libming · libmingJan 8, 2020
- CVE-2018-2042635Monitor
libming 0.4.8 has a NULL pointer dereference in the newVar3 function of the decompile.c file, a different vulnerability than CVE-2018-7866.
HighCVSS 8.8No exploitEPSS 1%libming · libmingDec 24, 2018
- CVE-2018-2042835Monitor
libming 0.4.8 has a NULL pointer dereference in the strlenext function of the decompile.c file, a different vulnerability than CVE-2018-7874
HighCVSS 8.8No exploitEPSS 1%libming · libmingDec 24, 2018
- CVE-2018-2042535Monitor
libming 0.4.8 has a NULL pointer dereference in the pushdup function of the decompile.c file.
HighCVSS 8.8No exploitEPSS 1%libming · libmingDec 24, 2018
- CVE-2018-2042935Monitor
libming 0.4.8 has a NULL pointer dereference in the getName function of the decompile.c file, a different vulnerability than CVE-2018-7872 a
HighCVSS 8.8No exploitEPSS 1%libming · libmingDec 24, 2018
- CVE-2019-911335Monitor
Ming (aka libming) 0.4.8 has a NULL pointer dereference in the function getString() in the decompile.c file in libutil.a.
HighCVSS 8.8No exploitEPSS 1%libming · mingFeb 25, 2019
- CVE-2018-1101735Monitor
The newVar_N function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actua
HighCVSS 8.8No exploitEPSS 1%libming · libmingMay 13, 2018
- CVE-2019-911435Monitor
Ming (aka libming) 0.4.8 has an out of bounds write vulnerability in the function strcpyext() in the decompile.c file in libutil.a.
HighCVSS 8.8No exploitEPSS 1%libming · mingFeb 25, 2019
- CVE-2019-1298135Monitor
Ming (aka libming) 0.4.8 has an "fill overflow" vulnerability in the function SWFShape_setLeftFillStyle in blocks/shape.c.
HighCVSS 8.8No exploitEPSS 1%libming · libmingJun 26, 2019
- CVE-2018-2042735Monitor
libming 0.4.8 has a NULL pointer dereference in the getInt function of the decompile.c file, a different vulnerability than CVE-2018-9132.
HighCVSS 8.8No exploitEPSS 1%libming · libmingDec 24, 2018