CVE-2026-95116
Awaiting Analysis Awaiting Analysis - Queue

Denial of Service in libming via readtag_file()

Vulnerability report for CVE-2026-95116, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-08

Last updated on: 2026-10-08

Assigner: MITRE

Description

An issue in libming through 0.4.8 allows a remote attacker to cause a denial of service via the readtag_file() in src/blocks/fromswf.c.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-08
Last Modified
2026-10-08
Generated
2026-10-09
AI Q&A
2026-10-09
EPSS Evaluated
N/A
NVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
n/a n/a n/a

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is a denial of service issue in libming through version 0.4.8. It occurs when a remote attacker exploits a flaw in the readtag_file() function located in src/blocks/fromswf.c, causing the application to crash or become unavailable.

Impact Analysis

If you use libming 0.4.8 or earlier, an attacker could send specially crafted input to trigger this flaw, leading to service disruption. This may cause your application to freeze, crash, or become unresponsive, affecting availability.

Mitigation Strategies

Update libming to the latest version beyond 0.4.8 to address the issue in readtag_file(). If updating is not possible, consider disabling affected functionality or blocking SWF file processing until a patch is applied.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-95116. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart