Critical severity9.6NVD Advisory· Published Jan 29, 2016· Updated May 6, 2026
CVE-2015-8789
CVE-2015-8789
Description
Use-after-free vulnerability in the EbmlMaster::Read function in libEBML before 1.3.3 allows context-dependent attackers to have unspecified impact via a "deeply nested element with infinite size" followed by another element of an upper level in an EBML document.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- lists.matroska.org/pipermail/matroska-users/2015-October/006985.htmlnvdVendor Advisory
- github.com/Matroska-Org/libebml/blob/release-1.3.3/ChangeLognvdVendor Advisory
- lists.opensuse.org/opensuse-updates/2016-01/msg00035.htmlnvd
- www.debian.org/security/2016/dsa-3538nvd
- www.securityfocus.com/bid/94924nvd
- www.talosintelligence.com/reports/TALOS-2016-0037/nvd
- github.com/Matroska-Org/libebml/commit/88409e2a94dd3b40ff81d08bf6d92f486d036b24nvd
News mentions
0No linked articles in our index yet.