CVE-2019-9114Out-of-bounds Write in Ming

Severity
8.8HIGHNVD
EPSS
0.3%
top 43.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 25
Latest updateMay 14

Description

Ming (aka libming) 0.4.8 has an out of bounds write vulnerability in the function strcpyext() in the decompile.c file in libutil.a.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages1 packages

NVDlibming/ming0.4.8

🔴Vulnerability Details

2
GHSA
GHSA-97jf-qw7w-788q: Ming (aka libming) 02022-05-14
OSV
CVE-2019-9114: Ming (aka libming) 02019-02-25

💬Community

2
Bugzilla
CVE-2019-9114 ming: out-of-bounds write in function strcpyext() in decompile.c2019-03-01
Bugzilla
CVE-2019-9114 ming: out-of-bounds write in function strcpyext() in decompile.c [fedora-all]2019-03-01