Description
libming through 0.4.8 contains a heap buffer overflow in r_readc() in src/blocks/fromswf.c. A crafted SWF file with a malformed or truncated RECT header can cause a denial of service.
Published: 2026-10-08
Score: n/a
EPSS: n/a
KEV: No
Impact: Denial of Service
Action: Immediate Patch
AI Analysis

Impact

A heap buffer overflow in the r_readc() function of the libming library allows a crafted SWF file containing a malformed or truncated RECT header to trigger a denial of service. The flaw arises when input data is read into a buffer larger than the allocated space, leading to corruption of the heap and program termination. The weakness is a classic heap buffer overflow, commonly tracked by CWE-122.

Affected Systems

All software that relies on libming versions up to and including 0.4.8 is affected. This includes any application that parses or manipulates SWF files through the libming library, regardless of vendor. The exact vendor or product names are not listed in the advisory, but any deployment using the specified library version is at risk.

Risk and Exploitability

The vulnerability has no associated EPSS score and is not listed in CISA’s KEV catalog, so its exploitation likelihood is currently unknown. The attack vector is local or remote depending on whether the application processes user‑supplied SWF files. Because the flaw triggers a crash rather than code execution, lateral impact is limited to service disruption; however, repeated exploitation could affect availability in high‑traffic environments.

Generated by OpenCVE AI on October 8, 2026 at 16:35 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade libming to version 0.4.9 or later, where the heap overflow is resolved.
  • Implement input validation to reject SWF files with malformed headers before they reach the parsing routine.
  • If SWF handling is not required, disable or remove the libming dependency from the application stack.

Generated by OpenCVE AI on October 8, 2026 at 16:35 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 08 Oct 2026 17:30:00 +0000

Type Values Removed Values Added
First Time appeared Libming
Libming libming
Vendors & Products Libming
Libming libming

Thu, 08 Oct 2026 17:00:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in SWF Parsing Leading to Denial of Service
Weaknesses CWE-119
CWE-122

Thu, 08 Oct 2026 14:15:00 +0000

Type Values Removed Values Added
Description libming through 0.4.8 contains a heap buffer overflow in r_readc() in src/blocks/fromswf.c. A crafted SWF file with a malformed or truncated RECT header can cause a denial of service.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-10-08T14:11:10.954Z

Reserved: 2026-09-22T00:00:00.000Z

Link: CVE-2026-95125

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-10-08T15:17:57.530

Modified: 2026-10-08T21:33:42.423

Link: CVE-2026-95125

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-08T17:15:05Z

Weaknesses
  • CWE-119

    Improper Restriction of Operations within the Bounds of a Memory Buffer

  • CWE-122

    Heap-based Buffer Overflow