Vulnerability index

Browse CVEs

95 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Libming MEDIUM 6.5
CVE-2018-15871

An invalid memory address dereference was discovered in decompileSingleArgBuiltInFunctionCall in libming 0.4.8 before 2018-03-12. The vulnerability c…

Fix: 0.4.8+
Fix from $1,600 2018-08-25
Libming MEDIUM 6.5
CVE-2018-13250

libming 0.4.8 has a NULL pointer dereference in the getString function of the decompile.c file, related to decompileSTRINGCONCAT. Remote attackers co…

No fix yet
Fix from $1,600 2018-07-05
Libming MEDIUM 6.5
CVE-2018-13251

In libming 0.4.8, there is an excessive memory allocation attempt in the readBytes function of the util/read.c file, related to parseSWF_DEFINEBITSJP…

No fix yet
Fix from $1,600 2018-07-05
Libming HIGH 7.5
CVE-2018-13066

There is a memory leak in util/parser.c in libming 0.4.8, which will lead to a denial of service via parseSWF_DEFINEBUTTON2, parseSWF_DEFINEFONT, par…

Mitigation only
Fix from $1,950 2018-07-02
Libming HIGH 8.8
CVE-2018-11225

The dcputs function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual size, whi…

Fix: after 0.4.8
Fix from $1,950 2018-05-17
Libming HIGH 8.8
CVE-2018-11226

The getString function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual size, …

Fix: after 0.4.8
Fix from $1,950 2018-05-17
Libming HIGH 8.8
CVE-2018-11100

The decompileSETTARGET function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actu…

Fix: after 0.4.8
Fix from $1,950 2018-05-15
Libming HIGH 8.8
CVE-2018-11095

The decompileJUMP function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual si…

Fix: after 0.4.8
Fix from $1,950 2018-05-15
Libming HIGH 8.8
CVE-2018-11017

The newVar_N function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual size, w…

Fix: after 0.4.8
Fix from $1,950 2018-05-13
Libming MEDIUM 6.5
CVE-2018-9165

The pushdup function in util/decompile.c in libming through 0.4.8 does not recognize the need for ActionPushDuplicate to perform a deep copy when a S…

Fix: after 0.4.8
Fix from $1,600 2018-04-01
Libming MEDIUM 6.5
CVE-2018-8964

In libming 0.4.8, the decompileDELETE function of decompile.c has a use-after-free. Remote attackers could leverage this vulnerability to cause a den…

No fix yet
Fix from $1,600 2018-03-23
Libming MEDIUM 6.5
CVE-2018-8961

In libming 0.4.8, the decompilePUSHPARAM function of decompile.c has a use-after-free. Remote attackers could leverage this vulnerability to cause a …

No fix yet
Fix from $1,600 2018-03-23
Libming MEDIUM 6.5
CVE-2018-8962

In libming 0.4.8, the decompileSingleArgBuiltInFunctionCall function of decompile.c has a use-after-free. Remote attackers could leverage this vulner…

No fix yet
Fix from $1,600 2018-03-23
Libming MEDIUM 6.5
CVE-2018-8963

In libming 0.4.8, the decompileGETVARIABLE function of decompile.c has a use-after-free. Remote attackers could leverage this vulnerability to cause …

No fix yet
Fix from $1,600 2018-03-23
Libming MEDIUM 6.5
CVE-2018-8806

In libming 0.4.8, there is a use-after-free in the decompileArithmeticOp function of decompile.c. Remote attackers could use this vulnerability to ca…

No fix yet
Fix from $1,600 2018-03-20
Libming MEDIUM 6.5
CVE-2018-8807

In libming 0.4.8, these is a use-after-free in the function decompileCALLFUNCTION of decompile.c. Remote attackers could leverage this vulnerability …

No fix yet
Fix from $1,600 2018-03-20
Libming MEDIUM 5.5
CVE-2017-16898

The printMP3Headers function in util/listmp3.c in libming v0.4.8 or earlier is vulnerable to a global buffer overflow, which may allow attackers to c…

Fix: after 0.4.8
Fix from $1,600 2017-11-20
Libming MEDIUM 6.5
CVE-2017-16883

The outputSWF_TEXT_RECORD function in util/outputscript.c in libming <= 0.4.8 is vulnerable to a NULL pointer dereference, which may allow attackers …

Fix: after 0.4.8
Fix from $1,600 2017-11-18
Ming MEDIUM 5.5
CVE-2017-11728

A heap-based buffer over-read was found in the function OpCode (called from decompileSETMEMBER) in util/decompile.c in Ming 0.4.8, which allows attac…

Mitigation only
Fix from $1,600 2017-07-29
Ming MEDIUM 5.5
CVE-2017-11729

A heap-based buffer over-read was found in the function OpCode (called from decompileINCR_DECR line 1440) in util/decompile.c in Ming 0.4.8, which al…

Mitigation only
Fix from $1,600 2017-07-29
Ming MEDIUM 5.5
CVE-2017-11730

A heap-based buffer over-read was found in the function OpCode (called from decompileINCR_DECR line 1474) in util/decompile.c in Ming 0.4.8, which al…

Mitigation only
Fix from $1,600 2017-07-29
Ming MEDIUM 5.5
CVE-2017-11731

An invalid memory read vulnerability was found in the function OpCode (called from isLogicalOp and decompileIF) in util/decompile.c in Ming 0.4.8, wh…

Mitigation only
Fix from $1,600 2017-07-29
Ming MEDIUM 5.5
CVE-2017-11734

A heap-based buffer over-read was found in the function decompileCALLFUNCTION in util/decompile.c in Ming 0.4.8, which allows attackers to cause a de…

Mitigation only
Fix from $1,600 2017-07-29
Ming MEDIUM 6.5
CVE-2017-11703

A memory leak vulnerability was found in the function parseSWF_DOACTION in util/parser.c in Ming 0.4.8, which allows attackers to cause a denial of s…

No fix yet
Fix from $1,600 2017-07-28
Ming MEDIUM 6.5
CVE-2017-11704

A heap-based buffer over-read was found in the function decompileIF in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of se…

No fix yet
Fix from $1,600 2017-07-28
Ming MEDIUM 6.5
CVE-2017-11705

A memory leak was found in the function parseSWF_SHAPEWITHSTYLE in util/parser.c in Ming 0.4.8, which allows attackers to cause a denial of service v…

No fix yet
Fix from $1,600 2017-07-28
Libming MEDIUM 6.5
CVE-2017-8782

The readString function in util/read.c and util/old/read.c in libming 0.4.8 allows remote attackers to cause a denial of service via a large file tha…

No fix yet
Fix from $1,600 2017-05-31
Libming HIGH 7.8
CVE-2017-7578

Multiple heap-based buffer overflows in parser.c in libming 0.4.7 allow remote attackers to cause a denial of service (listswf application crash) or …

Patch available
Fix from $1,950 2017-04-07
Libming MEDIUM 6.5
CVE-2016-9266

listmp3.c in libming 0.4.7 allows remote attackers to unspecified impact via a crafted mp3 file, which triggers an invalid left shift.

Mitigation only
Fix from $1,600 2017-03-23
Libming MEDIUM 5.5
CVE-2016-9264

Buffer overflow in the printMP3Headers function in listmp3.c in Libming 0.4.7 allows remote attackers to cause a denial of service (out-of-bounds rea…

Mitigation only
Fix from $1,600 2017-03-23