A memory leak was found in the function parseSWF_SHAPEWITHSTYLE in util/parser.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.
Link | Tags |
---|---|
https://github.com/libming/libming/issues/71 | third party advisory exploit |
http://somevulnsofadlab.blogspot.jp/2017/07/libmingmemory-leak-in.html | third party advisory exploit |