CVE-2017-8782: Libming

Medium severity, CVSS 6.5. EPSS: 1.5% chance of exploitation in the next 30 days.

The readString function in util/read.c and util/old/read.c in libming 0.4.8 allows remote attackers to cause a denial of service via a large file that is mishandled by listswf, listaction, etc. This occurs because of an integer overflow that leads to a memory allocation error.

Affected products

  • Libming Libming: version 0.4.8 only

Published 2017-05-31. Last modified 2026-06-17.