4.3
CVSSv3

CVE-2015-8791

Published: 29/01/2016 Updated: 03/12/2016
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The EbmlElement::ReadCodedSizeValue function in libEBML prior to 1.3.3 allows context-dependent malicious users to obtain sensitive information from process heap memory via a crafted length value in an EBML id, which triggers an invalid memory access.

Vulnerable Product Search on Vulmon Subscribe to Product

matroska libebml

Vendor Advisories

Several vulnerabilities were discovered in libebml, a library for manipulating Extensible Binary Meta Language files CVE-2015-8789 Context-dependent attackers could trigger a use-after-free vulnerability by providing a maliciously crafted EBML document CVE-2015-8790 Context-dependent attackers could obtain sensitive information f ...