Show filters
67 Total Results
Displaying 1-10 of 67
Sort by:
Attacker Value
Unknown

CVE-2024-32608

Disclosure Date: October 09, 2024 (last updated February 26, 2025)
HDF5 library through 1.14.3 has memory corruption in H5A__close resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
Attacker Value
Unknown

CVE-2020-18494

Disclosure Date: August 22, 2023 (last updated February 25, 2025)
Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allows remote attackers to run arbitrary code via creation of crafted file.
Attacker Value
Unknown

CVE-2020-18232

Disclosure Date: August 22, 2023 (last updated February 25, 2025)
Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allows remote attackers to run arbitrary code via creation of crafted file.
Attacker Value
Unknown

CVE-2021-37501

Disclosure Date: February 03, 2023 (last updated February 24, 2025)
Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of service via h5tools_str_sprint in /hdf5/tools/lib/h5tools_str.c.
Attacker Value
Unknown

CVE-2022-26061

Disclosure Date: August 16, 2022 (last updated February 24, 2025)
A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Attacker Value
Unknown

CVE-2022-25972

Disclosure Date: August 16, 2022 (last updated February 24, 2025)
An out-of-bounds write vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Attacker Value
Unknown

CVE-2022-25942

Disclosure Date: August 16, 2022 (last updated February 24, 2025)
An out-of-bounds read vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Attacker Value
Unknown

CVE-2021-46244

Disclosure Date: January 21, 2022 (last updated February 23, 2025)
A Divide By Zero vulnerability exists in HDF5 v1.13.1-1 vis the function H5T__complete_copy () at /hdf5/src/H5T.c. This vulnerability causes an aritmetic exception, leading to a Denial of Service (DoS).
Attacker Value
Unknown

CVE-2021-46243

Disclosure Date: January 21, 2022 (last updated February 23, 2025)
An untrusted pointer dereference vulnerability exists in HDF5 v1.13.1-1 via the function H5O__dtype_decode_helper () at hdf5/src/H5Odtype.c. This vulnerability can lead to a Denial of Service (DoS).
Attacker Value
Unknown

CVE-2021-46242

Disclosure Date: January 21, 2022 (last updated February 23, 2025)
HDF5 v1.13.1-1 was discovered to contain a heap-use-after free via the component H5AC_unpin_entry.