Bug 964398 (CVE-2015-8792) - VUL-0: CVE-2015-8792: The KaxInternalBlock::ReadData function in libMatroska leaks ifnormation
Summary: VUL-0: CVE-2015-8792: The KaxInternalBlock::ReadData function in libMatroska ...
Status: RESOLVED FIXED
Alias: CVE-2015-8792
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other openSUSE 42.1
: P3 - Medium : Normal
Target Milestone: ---
Assignee: Security Team bot
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/161442/
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2016-02-01 09:02 UTC by Johannes Segitz
Modified: 2016-03-28 19:54 UTC (History)
5 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Johannes Segitz 2016-02-01 09:02:30 UTC
CVE-2015-8792

The KaxInternalBlock::ReadData function in libMatroska before 1.4.4 allows
context-dependent attackers to obtain sensitive information from process heap
memory via crafted EBML lacing, which triggers an invalid memory access.

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-8792
https://github.com/Matroska-Org/libmatroska/commit/0a2d3e3644a7453b6513db2f9bc270f77943573f
https://github.com/Matroska-Org/libmatroska/blob/release-1.4.4/ChangeLog
Comment 1 Stefan Seyfried 2016-02-01 09:15:07 UTC
I have stepped down from maintaining libebml, libmatroska and mkvtoolnix in 2009:
http://lists.opensuse.org/opensuse-packaging/2009-08/msg00172.html

I know nothing about those packages, the only thing I can do is drop them and replace them with an empty package to make sure the vulnerability is solved by uninstalling them.
Comment 2 Swamp Workflow Management 2016-02-01 23:00:45 UTC
bugbot adjusting priority
Comment 3 Andreas Stieger 2016-03-28 19:54:16 UTC
Already fixed in 13.1, 13.2, Leap 42.1 via openSUSE:Maintenance:4501 which was a version update to 1.4.4 for bug 961031