CVE-2025-50343
published 2025-12-30CVE-2025-50343: An issue was discovered in matio 1.5.28. A heap-based memory corruption can occur in Mat_VarCreateStruct() when the nfields value does not match the actual…
PriorityP347critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.34%
26.5th percentile
An issue was discovered in matio 1.5.28. A heap-based memory corruption can occur in Mat_VarCreateStruct() when the nfields value does not match the actual number of strings in the fields array. This leads to out-of-bounds reads and invalid memory frees during cleanup, potentially causing a segmentation fault or heap corruption.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libmatio | < libmatio 1.5.19-2+deb11u1 (bullseye) | libmatio 1.5.19-2+deb11u1 (bullseye) |
| matio_project | matio | — | — |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
matio: matio: Memory corruption allows arbitrary code execution or denial of service
vendor_redhat·2025-12-30·CVSS 9.8
CVE-2025-50343 [CRITICAL] CWE-805 matio: matio: Memory corruption allows arbitrary code execution or denial of service
matio: matio: Memory corruption allows arbitrary code execution or denial of service
An issue was discovered in matio 1.5.28. A heap-based memory corruption can occur in Mat_VarCreateStruct() when the nfields value does not match the actual number of strings in the fields array. This leads to out-of-bounds reads and invalid memory frees during cleanup, potentially causing a segmentation fault or heap corruption.
A flaw was found in matio. This vulnerability involves a memory error within the Mat_VarCreateStruct() function, where the system incorrectly handles the number of fields in a data structure. This can lead to out-of-bounds memory access and improper memory cleanup. An attacker could exploit this issue to cause the application to crash, resulting in a denial of service, or potenti
Debian
CVE-2025-50343: libmatio - An issue was discovered in matio 1.5.28. A heap-based memory corruption can occu...
vendor_debian·2025·CVSS 9.8
CVE-2025-50343 [CRITICAL] CVE-2025-50343: libmatio - An issue was discovered in matio 1.5.28. A heap-based memory corruption can occu...
An issue was discovered in matio 1.5.28. A heap-based memory corruption can occur in Mat_VarCreateStruct() when the nfields value does not match the actual number of strings in the fields array. This leads to out-of-bounds reads and invalid memory frees during cleanup, potentially causing a segmentation fault or heap corruption.
Scope: local
bookworm: open
bullseye: resolved (fixed in 1.5.19-2+deb11u1)
forky: resolved (fixed in 1.5.30-2)
sid: resolved (fixed in 1.5.30-2)
trixie: open
GHSA
GHSA-54r5-8767-w6vq: An issue was discovered in matio 1
ghsa_unreviewed·2025-12-30
CVE-2025-50343 [CRITICAL] CWE-122 GHSA-54r5-8767-w6vq: An issue was discovered in matio 1
An issue was discovered in matio 1.5.28. A heap-based memory corruption can occur in Mat_VarCreateStruct() when the nfields value does not match the actual number of strings in the fields array. This leads to out-of-bounds reads and invalid memory frees during cleanup, potentially causing a segmentation fault or heap corruption.
OSV
CVE-2025-50343: An issue was discovered in matio 1
osv·2025-12-30·CVSS 9.8
CVE-2025-50343 [CRITICAL] CVE-2025-50343: An issue was discovered in matio 1
An issue was discovered in matio 1.5.28. A heap-based memory corruption can occur in Mat_VarCreateStruct() when the nfields value does not match the actual number of strings in the fields array. This leads to out-of-bounds reads and invalid memory frees during cleanup, potentially causing a segmentation fault or heap corruption.
No detection rules found.
No public exploits indexed.
2025-12-30
Published