Medium severity4.3NVD Advisory· Published Jan 29, 2016· Updated May 6, 2026
CVE-2015-8791
CVE-2015-8791
Description
The EbmlElement::ReadCodedSizeValue function in libEBML before 1.3.3 allows context-dependent attackers to obtain sensitive information from process heap memory via a crafted length value in an EBML id, which triggers an invalid memory access.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- lists.matroska.org/pipermail/matroska-users/2015-October/006985.htmlnvdVendor Advisory
- github.com/Matroska-Org/libebml/blob/release-1.3.3/ChangeLognvdVendor Advisory
- lists.opensuse.org/opensuse-updates/2016-01/msg00035.htmlnvd
- www.debian.org/security/2016/dsa-3538nvd
- github.com/Matroska-Org/libebml/commit/24e5cd7c666b1ddd85619d60486db0a5481c1b90nvd
News mentions
0No linked articles in our index yet.