LibmingCVEs & Vulnerabilities

124 CVEs affecting Libming products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.

Most Affected Products

libming 107ming 17
CVE-2025-66877HIGH

Buffer overflow vulnerability in function dcputchar in decompile.c in libming 0.4.8.

29 Dec 2025
7.5
CVSS
CVE-2025-66869HIGH

Buffer overflow vulnerability in function strcat in asan_interceptors.cpp in libming 0.4.8.

29 Dec 2025
7.5
CVSS
CVE-2025-29497MEDIUM

libming v0.4.8 was discovered to contain a memory leak via the parseSWF_MORPHFILLSTYLES function.

27 Mar 2025
6.5
CVSS
CVE-2025-29496MEDIUM

libming v0.4.8 was discovered to contain a segmentation fault via the decompileDUPLICATECLIP function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted SWF file.

27 Mar 2025
6.5
CVSS
CVE-2025-29494MEDIUM

libming v0.4.8 was discovered to contain a segmentation fault via the decompileGETMEMBER function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted SWF file.

27 Mar 2025
6.5
CVSS
CVE-2025-29493MEDIUM

libming v0.4.8 was discovered to contain a segmentation fault via the decompileGETPROPERTY function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted SWF file.

27 Mar 2025
6.5
CVSS
CVE-2025-29492MEDIUM

libming v0.4.8 was discovered to contain a segmentation fault via the decompileSETVARIABLE function.

27 Mar 2025
6.5
CVSS
CVE-2025-29491MEDIUM

An allocation-size-too-big error in the parseSWF_DEFINEBINARYDATA function of libming v0.48 allows attackers to cause a Denial of Service (DoS) via supplying a crafted SWF file.

27 Mar 2025
6.5
CVSS
CVE-2025-29490MEDIUM

libming v0.4.8 was discovered to contain a segmentation fault via the decompileCALLMETHOD function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted SWF file.

27 Mar 2025
6.5
CVSS
CVE-2025-29489MEDIUM

libming v0.4.8 was discovered to contain a memory leak via the parseSWF_MORPHLINESTYLES function.

27 Mar 2025
6.5
CVSS
CVE-2025-29488MEDIUM

libming v0.4.8 was discovered to contain a memory leak via the parseSWF_INITACTION function.

27 Mar 2025
6.5
CVSS
CVE-2025-29487HIGH

An out-of-memory error in the parseABC_STRING_INFO function of libming v0.4.8 allows attackers to cause a Denial of Service (DoS) due to allocator exhaustion.

27 Mar 2025
7.5
CVSS
CVE-2025-29486MEDIUM

libming v0.4.8 was discovered to contain a memory leak via the parseSWF_PLACEOBJECT3 function.

27 Mar 2025
6.5
CVSS
CVE-2025-29485MEDIUM

libming v0.4.8 was discovered to contain a segmentation fault via the decompileRETURN function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted SWF file.

27 Mar 2025
6.5
CVSS
CVE-2025-29484HIGH

An out-of-memory error in the parseABC_NS_SET_INFO function of libming v0.4.8 allows attackers to cause a Denial of Service (DoS) due to allocator exhaustion.

27 Mar 2025
7.5
CVSS
CVE-2025-29483MEDIUM

libming v0.4.8 was discovered to contain a memory leak via the parseSWF_ENABLEDEBUGGER2 function.

27 Mar 2025
6.5
CVSS
CVE-2025-26311MEDIUM

Multiple memory leaks have been identified in the clip actions parsing functions (parseSWF_CLIPACTIONS and parseSWF_CLIPACTIONRECORD) in util/parser.c of libming v0.4.8, which allow attackers to cause a denial of service via a crafted SWF file.

20 Feb 2025
6.5
CVSS
CVE-2025-26310MEDIUM

Multiple memory leaks have been identified in the ABC file parsing functions (parseABC_CONSTANT_POOL and `parseABC_FILE) in util/parser.c of libming v0.4.8, which allow attackers to cause a denial of service via a crafted ABC file.

20 Feb 2025
6.5
CVSS
CVE-2025-26309MEDIUM

A memory leak has been identified in the parseSWF_DEFINESCENEANDFRAMEDATA function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file.

20 Feb 2025
6.5
CVSS
CVE-2025-26308MEDIUM

A memory leak has been identified in the parseSWF_FILTERLIST function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file.

20 Feb 2025
6.5
CVSS
CVE-2025-26307MEDIUM

A memory leak has been identified in the parseSWF_IMPORTASSETS2 function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file.

20 Feb 2025
6.5
CVSS
CVE-2025-26306MEDIUM

A memory leak has been identified in the readSizedString function in util/read.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted file.

20 Feb 2025
6.5
CVSS
CVE-2025-26305HIGH

A memory leak has been identified in the parseSWF_SOUNDINFO function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file.

20 Feb 2025
8.2
CVSS
CVE-2025-26304HIGH

A memory leak has been identified in the parseSWF_EXPORTASSETS function in util/parser.c of libming v0.4.8.

20 Feb 2025
8.2
CVSS
CVE-2024-24150MEDIUM

A memory leak issue discovered in parseSWF_TEXTRECORD in libming v0.4.8 allows attackers to cause a denial of service via a crafted SWF file.

29 Feb 2024
6.5
CVSS
CVE-2024-24149MEDIUM

A memory leak issue discovered in parseSWF_GLYPHENTRY in libming v0.4.8 allows attackers to cause a denial of service via a crafted SWF file.

29 Feb 2024
6.5
CVSS
CVE-2024-24147MEDIUM

A memory leak issue discovered in parseSWF_FILLSTYLEARRAY in libming v0.4.8 allows attackers to cause s denial of service via a crafted SWF file.

29 Feb 2024
6.5
CVSS
CVE-2024-24146MEDIUM

A memory leak issue discovered in parseSWF_DEFINEBUTTON in libming v0.4.8 allows attackers to cause s denial of service via a crafted SWF file.

29 Feb 2024
6.5
CVSS
CVE-2024-24148HIGH

A memory leak issue discovered in parseSWF_FREECHARACTER in libming v0.4.8 allows attackers to cause a denial of service via a crafted SWF file.

28 Feb 2024
7.5
CVSS
CVE-2024-25770MEDIUM

libming 0.4.8 contains a memory leak vulnerability in /libming/src/actioncompiler/listaction.c.

26 Feb 2024
4.3
CVSS
CVE-2023-50628CRITICAL

Buffer Overflow vulnerability in libming version 0.4.8, allows attackers to execute arbitrary code and obtain sensitive information via parser.c component.

20 Dec 2023
9.8
CVSS
CVE-2023-40781MEDIUM

Buffer Overflow vulnerability in Libming Libming v.0.4.8 allows a remote attacker to cause a denial of service via a crafted .swf file to the makeswf function.

29 Aug 2023
6.5
CVSS
CVE-2023-36239HIGH

libming listswf 0.4.7 was discovered to contain a buffer overflow in the parseSWF_DEFINEFONTINFO() function at parser.c.

22 Jun 2023
8.8
CVSS
CVE-2023-30085MEDIUM

Buffer Overflow vulnerability found in Libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via the cws2fws function in util/decompile.c.

9 May 2023
5.5
CVSS
CVE-2023-30084MEDIUM

An issue found in libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via the stackVal function in util/decompile.c.

9 May 2023
5.5
CVSS
CVE-2023-30083MEDIUM

Buffer Overflow vulnerability found in Libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via the newVar_N in util/decompile.c.

9 May 2023
5.5
CVSS
CVE-2021-31240HIGH

An issue found in libming v.0.4.8 allows a local attacker to execute arbitrary code via the parseSWF_IMPORTASSETS function in the parser.c file.

9 May 2023
7.8
CVSS
CVE-2023-31976HIGH

libming v0.4.8 was discovered to contain a stack buffer overflow via the function makeswf_preprocess at /util/makeswf_utils.c.

9 May 2023
8.8
CVSS
CVE-2022-44232HIGH

libming 0.4.8 0.4.8 is vulnerable to Buffer Overflow. In getInt() in decompile.c unknown type may lead to denial of service. This is a different vulnerability than CVE-2018-9132 and CVE-2018-20427.

26 Apr 2023
7.5
CVSS
CVE-2021-34342MEDIUM

Ming 0.4.8 has an out-of-bounds read vulnerability in the function newVar_N() in decompile.c which causes a huge information leak.

10 Mar 2022
6.5
CVSS
CVE-2021-34341MEDIUM

Ming 0.4.8 has an out-of-bounds read vulnerability in the function decompileIF() in the decompile.c file that causes a direct segmentation fault and leads to denial of service.

10 Mar 2022
6.5
CVSS
CVE-2021-34340MEDIUM

Ming 0.4.8 has an out-of-bounds buffer access issue in the function decompileINCR_DECR() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.

10 Mar 2022
6.5
CVSS
CVE-2021-34339MEDIUM

Ming 0.4.8 has an out-of-bounds buffer access issue in the function getString() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.

10 Mar 2022
6.5
CVSS
CVE-2021-34338MEDIUM

Ming 0.4.8 has an out-of-bounds buffer overwrite issue in the function getName() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.

10 Mar 2022
6.5
CVSS
CVE-2021-44591MEDIUM

In libming 0.4.8, the parseSWF_DEFINELOSSLESS2 function in util/parser.c lacks a boundary check that would lead to denial-of-service attacks via a crafted SWF file.

6 Jan 2022
6.5
CVSS
CVE-2021-44590MEDIUM

In libming 0.4.8, a memory exhaustion vulnerability exist in the function cws2fws in util/main.c. Remote attackers could launch denial of service attacks by submitting a crafted SWF file that exploits this vulnerability.

6 Jan 2022
6.5
CVSS
CVE-2020-11895CRITICAL

Ming (aka libming) 0.4.8 has a heap-based buffer over-read (2 bytes) in the function decompileIF() in decompile.c.

19 Apr 2020
9.1
CVSS
CVE-2020-11894CRITICAL

Ming (aka libming) 0.4.8 has a heap-based buffer over-read (8 bytes) in the function decompileIF() in decompile.c.

19 Apr 2020
9.1
CVSS
← PrevPage 1 / 3Next →