CVE-2018-6315: Debian Linux

High severity, CVSS 8.8. EPSS: 2.5% chance of exploitation in the next 30 days.

The outputSWF_TEXT_RECORD function (util/outputscript.c) in libming through 0.4.8 is vulnerable to an integer overflow and resultant out-of-bounds read, which may allow attackers to cause a denial of service or unspecified other impact via a crafted SWF file.

Affected products

  • Debian Debian Linux: version 7.0 only
  • Libming Libming: up to and including 0.4.8

Published 2018-01-25. Last modified 2026-06-17.