VendorsLibmingming0.4.8
Vulnerabilities

Libming Ming 0.4.8

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

17CVEs
CVE-2019-9113
Ming (aka libming) 0.4.8 has a NULL pointer dereference in the function getString() in the decompile.c file in libutil.a.
Published 2019-02-25 · Modified
8.8EPSS 0.014
CVE-2019-9114
Ming (aka libming) 0.4.8 has an out of bounds write vulnerability in the function strcpyext() in the decompile.c file in libutil.a.
Published 2019-02-25 · Modified
8.8EPSS 0.013
CVE-2017-11704
A heap-based buffer over-read was found in the function decompileIF in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
Published 2017-07-28 · Modified
6.5EPSS 0.012
CVE-2017-11705
A memory leak was found in the function parseSWF_SHAPEWITHSTYLE in util/parser.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
Published 2017-07-28 · Modified
6.5EPSS 0.012
CVE-2017-11703
A memory leak vulnerability was found in the function parseSWF_DOACTION in util/parser.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
Published 2017-07-28 · Modified
6.5EPSS 0.012
CVE-2021-34342
Ming 0.4.8 has an out-of-bounds read vulnerability in the function newVar_N() in decompile.c which causes a huge information leak.
Published 2022-03-07 · Modified
6.5EPSS 0.011
CVE-2021-34338
Ming 0.4.8 has an out-of-bounds buffer overwrite issue in the function getName() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.
Published 2022-03-07 · Modified
6.5EPSS 0.010
CVE-2021-34339
Ming 0.4.8 has an out-of-bounds buffer access issue in the function getString() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.
Published 2022-03-07 · Modified
6.5EPSS 0.010
CVE-2021-34340
Ming 0.4.8 has an out-of-bounds buffer access issue in the function decompileINCR_DECR() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.
Published 2022-03-07 · Modified
6.5EPSS 0.009
CVE-2021-34341
Ming 0.4.8 has an out-of-bounds read vulnerability in the function decompileIF() in the decompile.c file that causes a direct segmentation fault and leads to denial of service.
Published 2022-03-07 · Modified
6.5EPSS 0.009
CVE-2017-11732
A heap-based buffer overflow vulnerability was found in the function dcputs (called from decompileIMPLEMENTS) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
Published 2017-07-29 · Modified
5.5EPSS 0.011
CVE-2017-11730
A heap-based buffer over-read was found in the function OpCode (called from decompileINCR_DECR line 1474) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
Published 2017-07-29 · Modified
5.5EPSS 0.011
CVE-2017-11729
A heap-based buffer over-read was found in the function OpCode (called from decompileINCR_DECR line 1440) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
Published 2017-07-29 · Modified
5.5EPSS 0.011
CVE-2017-11728
A heap-based buffer over-read was found in the function OpCode (called from decompileSETMEMBER) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
Published 2017-07-29 · Modified
5.5EPSS 0.011
CVE-2017-11733
A null pointer dereference vulnerability was found in the function stackswap (called from decompileSTACKSWAP) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
Published 2017-07-29 · Modified
5.5EPSS 0.010
CVE-2017-11731
An invalid memory read vulnerability was found in the function OpCode (called from isLogicalOp and decompileIF) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
Published 2017-07-29 · Modified
5.5EPSS 0.010
CVE-2017-11734
A heap-based buffer over-read was found in the function decompileCALLFUNCTION in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
Published 2017-07-29 · Modified
5.5EPSS 0.010