CVE-2019-20020: Medium severity libmatio vulnerability
Published Dec 27, 2019
·Updated
A stack-based buffer over-read was discovered in ReadNextStructField in mat5.c in matio 1.5.17.
Affected Software
1 affected component
Matio Project Matio=1.5.17
Event History
Dec 27, 2019
CVE Published
via MITRE·01:11 AM
Data Sourced
via MITRE·01:11 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-20020?
CVE-2019-20020 has been classified with a moderate severity rating.
2
How do I fix CVE-2019-20020?
To fix CVE-2019-20020, consider upgrading to a later version of matio that addresses this vulnerability.
3
What causes CVE-2019-20020?
CVE-2019-20020 is caused by a stack-based buffer over-read in the ReadNextStructField function in mat5.c.
4
Which version of matio is affected by CVE-2019-20020?
CVE-2019-20020 specifically affects matio version 1.5.17.
5
What impact does CVE-2019-20020 have on matio users?
CVE-2019-20020 can potentially lead to information disclosure through the buffer over-read.