CVE-2019-17533: Debian Linux

High severity, CVSS 8.2. EPSS: 1.9% chance of exploitation in the next 30 days.

Mat_VarReadNextInfo4 in mat4.c in MATIO 1.5.17 omits a certain '\0' character, leading to a heap-based buffer over-read in strdup_vprintf when uninitialized memory is accessed.

Affected products

Published 2019-10-13. Last modified 2026-06-17.