MatVarReadNextInfo4 in mat4.c in MATIO 1.5.17 omits a certain '\0' character, leading to a heap-based buffer over-read in strdupvprintf when uninitialized memory is accessed. (CVE-2019-17533)
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2020-0299.json"