CVE-2025-29491
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Mar 27, 2025
Updated: Apr 1, 2025
CWE ID 789
Summary
CVE-2025-29491 is a newly discovered vulnerability affecting the parseSWF_DEFINEBINARYDATA function in libming v0.48. This error, classified as an allocation-size-too-big issue, enables attackers to cause a Denial of Service (DoS) by providing a specially crafted SWF file. The flaw allows the file to consume excessive memory resources, leading to a system crash and potential downtime for affected platforms. To mitigate this risk, users are strongly advised to update their libming library to the latest version as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.