Medium severity4.3NVD Advisory· Published Jan 29, 2016· Updated May 6, 2026
CVE-2015-8790
CVE-2015-8790
Description
The EbmlUnicodeString::UpdateFromUTF8 function in libEBML before 1.3.3 allows context-dependent attackers to obtain sensitive information from process heap memory via a crafted UTF-8 string, which triggers an invalid memory access.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- lists.matroska.org/pipermail/matroska-users/2015-October/006985.htmlnvdVendor Advisory
- github.com/Matroska-Org/libebml/blob/release-1.3.3/ChangeLognvdVendor Advisory
- lists.opensuse.org/opensuse-updates/2016-01/msg00035.htmlnvd
- www.debian.org/security/2016/dsa-3538nvd
- www.securityfocus.com/bid/85307nvd
- www.securityfocus.com/bid/95124nvd
- www.talosintelligence.com/reports/TALOS-2016-0036/nvd
- github.com/Matroska-Org/libebml/commit/ababb64e0c792ad2a314245233db0833ba12036bnvd
News mentions
0No linked articles in our index yet.