Show filters
68 Total Results
Displaying 1-10 of 68
Sort by:
Attacker Value
Unknown
CVE-2025-2153
Disclosure Date: March 10, 2025 (last updated March 11, 2025)
A vulnerability, which was classified as critical, was found in HDF5 1.14.6. Affected is the function H5SM_delete of the file H5SM.c of the component h5 File Handler. The manipulation leads to heap-based buffer overflow. It is possible to launch the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used.
0
Attacker Value
Unknown
CVE-2024-32608
Disclosure Date: October 09, 2024 (last updated February 26, 2025)
HDF5 library through 1.14.3 has memory corruption in H5A__close resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
0
Attacker Value
Unknown
CVE-2020-18494
Disclosure Date: August 22, 2023 (last updated February 25, 2025)
Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allows remote attackers to run arbitrary code via creation of crafted file.
0
Attacker Value
Unknown
CVE-2020-18232
Disclosure Date: August 22, 2023 (last updated February 25, 2025)
Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allows remote attackers to run arbitrary code via creation of crafted file.
0
Attacker Value
Unknown
CVE-2021-37501
Disclosure Date: February 03, 2023 (last updated February 24, 2025)
Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of service via h5tools_str_sprint in /hdf5/tools/lib/h5tools_str.c.
0
Attacker Value
Unknown
CVE-2022-26061
Disclosure Date: August 16, 2022 (last updated February 24, 2025)
A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2022-25972
Disclosure Date: August 16, 2022 (last updated February 24, 2025)
An out-of-bounds write vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2022-25942
Disclosure Date: August 16, 2022 (last updated February 24, 2025)
An out-of-bounds read vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2021-46244
Disclosure Date: January 21, 2022 (last updated February 23, 2025)
A Divide By Zero vulnerability exists in HDF5 v1.13.1-1 vis the function H5T__complete_copy () at /hdf5/src/H5T.c. This vulnerability causes an aritmetic exception, leading to a Denial of Service (DoS).
0
Attacker Value
Unknown
CVE-2021-46243
Disclosure Date: January 21, 2022 (last updated February 23, 2025)
An untrusted pointer dereference vulnerability exists in HDF5 v1.13.1-1 via the function H5O__dtype_decode_helper () at hdf5/src/H5Odtype.c. This vulnerability can lead to a Denial of Service (DoS).
0