CVE-2017-7578: Libming

High severity, CVSS 7.8. EPSS: 1.2% chance of exploitation in the next 30 days.

Multiple heap-based buffer overflows in parser.c in libming 0.4.7 allow remote attackers to cause a denial of service (listswf application crash) or possibly have unspecified other impact via a crafted SWF file. NOTE: this issue exists because of an incomplete fix for CVE-2016-9831.

Affected products

  • Libming Libming: version 0.4.7 only

Published 2017-04-07. Last modified 2026-06-17.