A flaw was found in libebml before 1.4.2. A heap overflow bug exists in the implementation of EbmlString::ReadData and EbmlUnicodeString::ReadData in libebml.
[
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"48377290074949130495164895076365827608",
"316359439968302076612153081825500800864"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2021-3405-de8843e5",
"target": {
"file": "src/EbmlVersion.cpp"
},
"source": "https://github.com/matroska-org/libebml/commit/6c59e5e1ce0087e4465f6d3f479449d3f6bcb167"
}
]
[
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "32"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "33"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "34"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "9.0"
}
]
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-3405.json"