An issue was discovered in matio 1.5.28. A heap-based...
Critical severity
Unreviewed
Published
Dec 30, 2025
to the GitHub Advisory Database
•
Updated Jan 2, 2026
Description
Published by the National Vulnerability Database
Dec 30, 2025
Published to the GitHub Advisory Database
Dec 30, 2025
Last updated
Jan 2, 2026
An issue was discovered in matio 1.5.28. A heap-based memory corruption can occur in Mat_VarCreateStruct() when the nfields value does not match the actual number of strings in the fields array. This leads to out-of-bounds reads and invalid memory frees during cleanup, potentially causing a segmentation fault or heap corruption.
References