CVE-2018-6315: Debian Linux
High severity, CVSS 8.8. EPSS: 2.5% chance of exploitation in the next 30 days.
The outputSWF_TEXT_RECORD function (util/outputscript.c) in libming through 0.4.8 is vulnerable to an integer overflow and resultant out-of-bounds read, which may allow attackers to cause a denial of service or unspecified other impact via a crafted SWF file.
Affected products
Published 2018-01-25. Last modified 2026-06-17.