CVE-2019-17533: Debian Linux
High severity, CVSS 8.2. EPSS: 1.9% chance of exploitation in the next 30 days.
Mat_VarReadNextInfo4 in mat4.c in MATIO 1.5.17 omits a certain '\0' character, leading to a heap-based buffer over-read in strdup_vprintf when uninitialized memory is accessed.
Affected products
- Debian Debian Linux: version 8.0 only
- Matio Project Matio: version 1.5.17 only
Published 2019-10-13. Last modified 2026-06-17.