yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2023-52339
Component Overview
Vulnerability Overview
Name
CVE-2023-52339
Source
NVD (
link
)
Debian (
link
)
Description
In libebml before 1.4.5, an integer overflow in MemIOCallback.cpp can occur when reading or writing. It may result in buffer overflows.
CWEs
CWE-190
CWE-190
Published Date
Jan 12, 2024
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://github.com/Matroska-Org/libebml/blob/v1.x/NEWS.md
Release Notes
https://github.com/Matroska-Org/libebml/compare/release-1.4.4...release-1.4.5
Release Notes
https://github.com/Matroska-Org/libebml/issues/147
Exploit
https://github.com/Matroska-Org/libebml/pull/148
Patch
https://github.com/Matroska-Org/libebml/blob/v1.x/NEWS.md
Release Notes
https://github.com/Matroska-Org/libebml/compare/release-1.4.4...release-1.4.5
Release Notes
https://github.com/Matroska-Org/libebml/issues/147
Exploit
https://github.com/Matroska-Org/libebml/pull/148
Patch
Analysis
#
Affected Component
Analysis
libebml
Exploitable
Vulnerability Ratings
#
6.5
CVSSv31
6.5
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
libebml
buildroot
2025.02.x
1.4.5
Not Affected
libebml
buildroot
master
1.4.5
Not Affected
libebml
yocto
master
1.4.5
Not Affected
libebml
yocto
scarthgap
1.4.5
Not Affected