CVE-2020-36428: Buffer Overflow
Published Jul 20, 2021
·Updated
matio (aka MAT File I/O Library) 1.5.18 through 1.5.21 has a heap-based buffer overflow in ReadInt32DataDouble (called from ReadInt32Data and MatVarRead4).
Affected Software
1 affected component
Matio Project Matio>=1.5.18<=1.5.21
Event History
Jul 20, 2021
CVE Published
via MITRE·06:47 AM
Data Sourced
via MITRE·06:47 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-36428?
CVE-2020-36428 is classified as critical due to the potential for a heap-based buffer overflow.
2
How do I fix CVE-2020-36428?
To mitigate CVE-2020-36428, upgrade the matio library to version 1.5.22 or later.
3
Which versions of matio are affected by CVE-2020-36428?
CVE-2020-36428 affects matio versions from 1.5.18 to 1.5.21.
4
What are the consequences of exploiting CVE-2020-36428?
Exploiting CVE-2020-36428 can lead to arbitrary code execution due to the heap-based buffer overflow.
5
Is CVE-2020-36428 a widely exploited vulnerability?
As of now, there is no public knowledge of active exploitation of CVE-2020-36428, but it remains a critical risk.