CVE-2015-8789: Matroska Libebml

Critical severity, CVSS 9.6. EPSS: 2.1% chance of exploitation in the next 30 days.

Use-after-free vulnerability in the EbmlMaster::Read function in libEBML before 1.3.3 allows context-dependent attackers to have unspecified impact via a "deeply nested element with infinite size" followed by another element of an upper level in an EBML document.

Affected products

  • Matroska Libebml: up to and including 1.3.2

Published 2016-01-29. Last modified 2026-06-17.