Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2018.0212
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2018-0212)
Summary:The remote host is missing an update for the 'ming' package(s) announced via the MGASA-2018-0212 advisory.
Description:Summary:
The remote host is missing an update for the 'ming' package(s) announced via the MGASA-2018-0212 advisory.

Vulnerability Insight:
The readString function in util/read.c and util/old/read.c in libming
0.4.8 allows remote attackers to cause a denial of service via a large
file that is mishandled by listswf, listaction, etc. This occurs
because of an integer overflow that leads to a memory allocation error.
(CVE-2017-8782)

The readEncUInt30 function in util/read.c in libming 0.4.8 mishandles
memory allocation. A crafted input will lead to a remote denial of
service (NULL pointer dereference) attack against parser.c.
(CVE-2017-9988)

util/outputtxt.c in libming 0.4.8 mishandles memory allocation. A
crafted input will lead to a remote denial of service (NULL pointer
dereference) attack. (CVE-2017-9989)

A heap-based buffer over-read was found in the function decompileIF in
util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial
of service via a crafted file. (CVE-2017-11704)

A heap-based buffer over-read was found in the function OpCode (called
from decompileSETMEMBER) in util/decompile.c in Ming 0.4.8, which allows
attackers to cause a denial of service via a crafted file.
(CVE-2017-11728)

A heap-based buffer over-read was found in the function OpCode (called
from decompileINCR_DECR line 1440) in util/decompile.c in Ming 0.4.8,
which allows attackers to cause a denial of service via a crafted file.
(CVE-2017-11729)

A heap-based buffer over-read was found in the function OpCode (called
from decompileINCR_DECR line 1474) in util/decompile.c in Ming 0.4.8,
which allows attackers to cause a denial of service via a crafted file.
(CVE-2017-11730)

An invalid memory read vulnerability was found in the function OpCode
(called from isLogicalOp and decompileIF) in util/decompile.c in Ming
0.4.8, which allows attackers to cause a denial of service via a crafted
file. (CVE-2017-11731)

A heap-based buffer overflow vulnerability was found in the function
dcputs (called from decompileIMPLEMENTS) in util/decompile.c in Ming
0.4.8, which allows attackers to cause a denial of service via a
crafted file. (CVE-2017-11732)

A null pointer dereference vulnerability was found in the function
stackswap (called from decompileSTACKSWAP) in util/decompile.c in Ming
0.4.8, which allows attackers to cause a denial of service via a crafted
file. (CVE-2017-11733)

A heap-based buffer over-read was found in the function
decompileCALLFUNCTION in util/decompile.c in Ming 0.4.8, which allows
attackers to cause a denial of service via a crafted file.
(CVE-2017-11734)

The outputSWF_TEXT_RECORD function in util/outputscript.c in libming <=
0.4.8 is vulnerable to a NULL pointer dereference, which may allow
attackers to cause a denial of service via a crafted swf file.
(CVE-2017-16883)

The printMP3Headers function in util/listmp3.c in libming v0.4.8 or
earlier is vulnerable to a global buffer overflow, which may allow
attackers to cause a denial of service via a crafted file, a different
vulnerability than ... [Please see the references for more information on the vulnerabilities]

Affected Software/OS:
'ming' package(s) on Mageia 6.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-11704
http://somevulnsofadlab.blogspot.jp/2017/07/libmingheap-buffer-overflow-in.html
https://github.com/libming/libming/issues/76
Common Vulnerability Exposure (CVE) ID: CVE-2017-11728
https://security.gentoo.org/glsa/201904-24
http://somevulnsofadlab.blogspot.jp/2017/07/libmingheap-buffer-overflow-in-opcode_32.html
https://github.com/libming/libming/issues/82
Common Vulnerability Exposure (CVE) ID: CVE-2017-11729
http://somevulnsofadlab.blogspot.jp/2017/07/libmingheap-buffer-overflow-in-opcode.html
https://github.com/libming/libming/issues/79
Common Vulnerability Exposure (CVE) ID: CVE-2017-11730
http://somevulnsofadlab.blogspot.jp/2017/07/libmingheap-buffer-overflow-in-opcode_24.html
https://github.com/libming/libming/issues/81
Common Vulnerability Exposure (CVE) ID: CVE-2017-11731
http://somevulnsofadlab.blogspot.jp/2017/07/libminginvalid-memory-read-in-opcode.html
https://github.com/libming/libming/issues/84
Common Vulnerability Exposure (CVE) ID: CVE-2017-11732
http://somevulnsofadlab.blogspot.jp/2017/07/libmingheap-buffer-overflow-in-dcputs.html
https://github.com/libming/libming/issues/80
https://lists.debian.org/debian-lts-announce/2018/01/msg00014.html
Common Vulnerability Exposure (CVE) ID: CVE-2017-11733
http://somevulnsofadlab.blogspot.jp/2017/07/libmingnull-pointer-dereference-in.html
https://github.com/libming/libming/issues/78
https://lists.debian.org/debian-lts-announce/2017/11/msg00022.html
Common Vulnerability Exposure (CVE) ID: CVE-2017-11734
http://somevulnsofadlab.blogspot.jp/2017/07/libmingheap-buffer-overflow-in_24.html
https://github.com/libming/libming/issues/83
Common Vulnerability Exposure (CVE) ID: CVE-2017-16883
Common Vulnerability Exposure (CVE) ID: CVE-2017-16898
Common Vulnerability Exposure (CVE) ID: CVE-2017-8782
BugTraq ID: 98793
http://www.securityfocus.com/bid/98793
http://seclists.org/fulldisclosure/2017/May/106
Common Vulnerability Exposure (CVE) ID: CVE-2017-9988
https://github.com/libming/libming/issues/85
Common Vulnerability Exposure (CVE) ID: CVE-2017-9989
https://github.com/libming/libming/issues/86
Common Vulnerability Exposure (CVE) ID: CVE-2018-5251
https://github.com/libming/libming/issues/97
https://lists.debian.org/debian-lts-announce/2018/03/msg00008.html
Common Vulnerability Exposure (CVE) ID: CVE-2018-5294
https://github.com/libming/libming/issues/98
Common Vulnerability Exposure (CVE) ID: CVE-2018-6315
BugTraq ID: 102828
http://www.securityfocus.com/bid/102828
Common Vulnerability Exposure (CVE) ID: CVE-2018-6359
BugTraq ID: 102856
http://www.securityfocus.com/bid/102856
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.