CVE-2019-12982: Libming

Medium severity, CVSS 6.5. EPSS: 1.4% chance of exploitation in the next 30 days.

Ming (aka libming) 0.4.8 has a heap buffer overflow and underflow in the decompileCAST function in util/decompile.c in libutil.a. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted SWF file.

Affected products

  • Libming Libming: version 0.4.8 only

Published 2019-06-26. Last modified 2026-06-17.