CVE-2026-29043
- EPSS 0.04%
- Veröffentlicht 10.04.2026 15:35:51
- Zuletzt bearbeitet 16.04.2026 19:40:13
HDF5 is software for managing data. In 1.14.1-2 and earlier, an attacker who can control an h5 file parsed by HDF5 can trigger a write-based heap buffer overflow condition in the H5T__ref_mem_setnull method. This can lead to a denial-of-service condi...
CVE-2026-34734
- EPSS 0.01%
- Veröffentlicht 09.04.2026 20:16:25
- Zuletzt bearbeitet 14.04.2026 20:09:51
HDF5 is software for managing data. In 1.14.1-2 and earlier, a heap-use-after-free was found in the h5dump helper utility. An attacker who can supply a malicious h5 file can trigger a heap use-after-free. The freed object is referenced in a memmove c...
CVE-2026-26200
- EPSS 0.05%
- Veröffentlicht 19.02.2026 19:19:10
- Zuletzt bearbeitet 20.02.2026 20:14:37
HDF5 is software for managing data. Prior to version 1.14.4-2, an attacker who can control an `h5` file parsed by HDF5 can trigger a write-based heap buffer overflow condition. This can lead to a denial-of-service condition, and potentially further i...
CVE-2025-7069
- EPSS 0.05%
- Veröffentlicht 04.07.2025 21:02:06
- Zuletzt bearbeitet 09.07.2025 17:39:22
A vulnerability, which was classified as problematic, was found in HDF5 1.14.6. Affected is the function H5FS__sect_link_size of the file src/H5FSsection.c. The manipulation leads to heap-based buffer overflow. It is possible to launch the attack on ...
CVE-2025-7068
- EPSS 0.05%
- Veröffentlicht 04.07.2025 20:32:06
- Zuletzt bearbeitet 09.07.2025 17:36:15
A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5FL__malloc of the file src/H5FL.c. The manipulation leads to memory leak. Attacking locally is a requirement. The exploit has been ...
CVE-2025-7067
- EPSS 0.05%
- Veröffentlicht 04.07.2025 18:02:05
- Zuletzt bearbeitet 09.07.2025 17:36:25
A vulnerability classified as problematic was found in HDF5 1.14.6. This vulnerability affects the function H5FS__sinfo_serialize_node_cb of the file src/H5FScache.c. The manipulation leads to heap-based buffer overflow. Local access is required to a...
CVE-2025-6858
- EPSS 0.05%
- Veröffentlicht 29.06.2025 11:00:14
- Zuletzt bearbeitet 08.07.2025 14:38:35
A vulnerability was found in HDF5 1.14.6 and classified as problematic. Affected by this issue is the function H5C__flush_single_entry of the file src/H5Centry.c. The manipulation leads to null pointer dereference. The attack needs to be approached l...
CVE-2025-6857
- EPSS 0.05%
- Veröffentlicht 29.06.2025 10:15:22
- Zuletzt bearbeitet 08.07.2025 14:39:20
A vulnerability has been found in HDF5 1.14.6 and classified as problematic. Affected by this vulnerability is the function H5G__node_cmp3 of the file src/H5Gnode.c. The manipulation leads to stack-based buffer overflow. It is possible to launch the ...
CVE-2025-6856
- EPSS 0.05%
- Veröffentlicht 29.06.2025 09:31:05
- Zuletzt bearbeitet 08.07.2025 14:39:33
A vulnerability, which was classified as problematic, was found in HDF5 1.14.6. Affected is the function H5FL__reg_gc_list of the file src/H5FL.c. The manipulation leads to use after free. Attacking locally is a requirement. The exploit has been disc...
CVE-2025-6818
- EPSS 0.05%
- Veröffentlicht 28.06.2025 15:31:06
- Zuletzt bearbeitet 08.07.2025 14:45:44
A vulnerability, which was classified as problematic, was found in HDF5 1.14.6. Affected is the function H5O__chunk_protect of the file /src/H5Ochunk.c. The manipulation leads to heap-based buffer overflow. An attack has to be approached locally. The...