Bug ID 1218754
Summary VUL-0: CVE-2023-52339: In libebml before 1.4.5, an integer overflow in MemIOCallback.cpp can occur when reading or writing. It may result in buffer overflows.
Classification openSUSE
Product openSUSE Distribution
Version Leap 15.6
Hardware Other
URL https://smash.suse.de/issue/390983/
OS Other
Status NEW
Severity Normal
Priority P5 - None
Component Security
Assignee rpm@fthiessen.de
Reporter smash_bz@suse.de
QA Contact security-team@suse.de
CC stoyan.manolov@suse.com
Target Milestone ---
Found By Security Response Team
Blocker ---

In libebml before 1.4.5, an integer overflow in MemIOCallback.cpp can occur
when reading or writing. It may result in buffer overflows.

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-52339
https://www.cve.org/CVERecord?id=CVE-2023-52339
https://github.com/Matroska-Org/libebml/blob/v1.x/NEWS.md
https://github.com/Matroska-Org/libebml/compare/release-1.4.4...release-1.4.5
https://github.com/Matroska-Org/libebml/issues/147
https://github.com/Matroska-Org/libebml/pull/148


You are receiving this mail because: