VDB
CVE-2019-12980
CVE-2019-12980
PUBLISHED
In Ming (aka libming) 0.4.8, there is an integer overflow (caused by an out-of-range left shift) in the SWFInput_readSBits function in blocks/input.c. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted swf file.
EPSS 0.46% · 64.3th percentile
Risk Scores
EPSS Score
0.46%
64.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:16.04:LTS | ming | 0, 1:0.4.5-1.2ubuntu2, 1:0.4.5-1.2ubuntu5 |
Exploit Intelligence
Timeline
- Jun 26, 2019 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Feb 28, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Nov 6, 2022 EPSS Score
References
- https://ubuntu.com/security/CVE-2019-12980 third-party-advisory
- https://github.com/libming/libming/pull/179/commits/2223f7a1e431455a1411bee77c90db94a6f8e8fe third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2019-12980 third-party-advisory