PT-2019-14781 · Libming · Ming

Jshuang

·

Published

2019-09-23

·

Updated

2019-09-23

·

CVE-2019-16705

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Ming (aka libming) version 0.4.8
Description The issue is related to an out of bounds read in the OpCode() function, located in the decompile.c file within libutil.a.
Recommendations For Ming (aka libming) version 0.4.8, consider avoiding the use of the OpCode() function until a patch is available. As a temporary workaround, restricting access to the decompile.c file or the libutil.a library may help minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-16705

Affected Products

Ming