Critical severity9.6NVD Advisory· Published Jan 29, 2016· Updated Jun 17, 2026
CVE-2015-8789
CVE-2015-8789
Description
Use-after-free vulnerability in the EbmlMaster::Read function in libEBML before 1.3.3 allows context-dependent attackers to have unspecified impact via a "deeply nested element with infinite size" followed by another element of an upper level in an EBML document.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:matroska:libebml:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:matroska:libebml:*:*:*:*:*:*:*:*range: <=1.3.2
- (no CPE)range: <=1.3.2
Patches
Vulnerability mechanics
References
7- lists.matroska.org/pipermail/matroska-users/2015-October/006985.htmlnvdVendor Advisory
- github.com/Matroska-Org/libebml/blob/release-1.3.3/ChangeLognvdVendor Advisory
- lists.opensuse.org/opensuse-updates/2016-01/msg00035.htmlnvd
- www.debian.org/security/2016/dsa-3538nvd
- www.securityfocus.com/bid/94924nvd
- www.talosintelligence.com/reports/TALOS-2016-0037/nvd
- github.com/Matroska-Org/libebml/commit/88409e2a94dd3b40ff81d08bf6d92f486d036b24nvd
News mentions
0No linked articles in our index yet.