9.3
CVSSv2

CVE-2015-8789

Published: 29/01/2016 Updated: 20/01/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 9.6 | Impact Score: 6 | Exploitability Score: 2.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Use-after-free vulnerability in the EbmlMaster::Read function in libEBML prior to 1.3.3 allows context-dependent malicious users to have unspecified impact via a "deeply nested element with infinite size" followed by another element of an upper level in an EBML document.

Vulnerable Product Search on Vulmon Subscribe to Product

matroska libebml

Vendor Advisories

Several vulnerabilities were discovered in libebml, a library for manipulating Extensible Binary Meta Language files CVE-2015-8789 Context-dependent attackers could trigger a use-after-free vulnerability by providing a maliciously crafted EBML document CVE-2015-8790 Context-dependent attackers could obtain sensitive information f ...