openSUSE-SU-2026:20022-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:20022-1.json
JSON Data
https://api.osv.dev/v1/vulns/openSUSE-SU-2026:20022-1
Upstream
Related
Published
2026-01-11T17:15:13Z
Modified
2026-03-23T04:54:41.142788Z
Summary
Security update for matio
Details

This update for matio fixes the following issues:

  • update to version 1.5.29:

    • Fix printing rank-1-variable in Mat_VarPrint
    • Fix array index out of bounds in Mat_VarPrint when printing UTF-8 character data (boo#1239678, CVE-2025-2337)
    • Fix heap-based buffer overflow in strdup_vprintf (boo#1239677, CVE-2025-2338)
    • Changed Mat_VarPrint to print all values of rank-2-variable
    • Several other fixes, for example for access violations in Mat_VarPrint
  • Update to version 1.5.28:

    • Fixed bug writing MATTINT8/MATTUINT8 encoded character array to compressed v5 MAT file (regression of v1.5.12).
    • Fixed bug reading all-zero sparse array of v4 MAT file (regression of v1.5.18).
    • Updated C99 snprintf.c.
    • CMake: Enabled testing.
    • Several other fixes, for example for access violations in Mat_VarPrint.
References

Affected packages

openSUSE:Leap 16.0 / matio

Package

Name
matio
Purl
pkg:rpm/opensuse/matio&distro=openSUSE%20Leap%2016.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.5.29-bp160.1.1

Ecosystem specific

{
    "binaries": [
        {
            "libmatio-devel": "1.5.29-bp160.1.1",
            "libmatio13": "1.5.29-bp160.1.1",
            "matio-tools": "1.5.29-bp160.1.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:20022-1.json"