Medium severity6.5NVD Advisory· Published Jun 28, 2017· Updated May 13, 2026
CVE-2017-9988
CVE-2017-9988
Description
The readEncUInt30 function in util/read.c in libming 0.4.8 mishandles memory allocation. A crafted input will lead to a remote denial of service (NULL pointer dereference) attack against parser.c.
Affected products
2- cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- github.com/libming/libming/issues/85nvdExploitThird Party Advisory
- lists.debian.org/debian-lts-announce/2017/11/msg00022.htmlnvdMailing ListThird Party Advisory
- security.gentoo.org/glsa/201904-24nvdThird Party Advisory
News mentions
0No linked articles in our index yet.