Vulnerabilities (CVE)

Filtered by vendor Hdfgroup Subscribe
Total 106 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-32609 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 7.5 HIGH
HDF5 Library through 1.14.3 allows stack consumption in the function H5E_printf_stack in H5Eint.c.
CVE-2024-32610 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 5.7 MEDIUM
HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in a corrupted instruction pointer.
CVE-2024-32611 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 9.8 CRITICAL
HDF5 Library through 1.14.3 may use an uninitialized value in H5A__attr_release_table in H5Aint.c.
CVE-2024-32612 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 7.4 HIGH
HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5HL__fl_deserialize in H5HLcache.c, resulting in the corruption of the instruction pointer, a different vulnerability than CVE-2024-32613.
CVE-2024-32613 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 7.4 HIGH
HDF5 Library through 1.14.3 contains a heap-based buffer over-read in the function H5HL__fl_deserialize in H5HLcache.c, a different vulnerability than CVE-2024-32612.
CVE-2024-32614 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 8.8 HIGH
HDF5 Library through 1.14.3 has a SEGV in H5VM_memcpyvv in H5VM.c.
CVE-2024-32615 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 9.8 CRITICAL
HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5Z__nbit_decompress_one_byte in H5Znbit.c, caused by the earlier use of an initialized pointer.
CVE-2024-32616 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 7.4 HIGH
HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5O__dtype_encode_helper in H5Odtype.c.
CVE-2024-32617 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 8.8 HIGH
HDF5 Library through 1.14.3 contains a heap-based buffer over-read caused by the unsafe use of strdup in H5MM_xstrdup in H5MM.c (called from H5G__ent_to_link in H5Glink.c).
CVE-2024-32618 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 7.4 HIGH
HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__get_native_type in H5Tnative.c, resulting in the corruption of the instruction pointer.
CVE-2024-29165 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 7.4 HIGH
HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_fletcher32, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
CVE-2024-29161 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 8.8 HIGH
HDF5 through 1.14.3 contains a heap buffer overflow in H5A__attr_release_table, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
CVE-2024-29160 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 7.4 HIGH
HDF5 through 1.14.3 contains a heap buffer overflow in H5HG__cache_heap_deserialize, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
CVE-2024-29159 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 9.8 CRITICAL
HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_scaleoffset, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
CVE-2024-29158 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 7.4 HIGH
HDF5 through 1.14.3 contains a stack buffer overflow in H5FL_arr_malloc, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
CVE-2024-29162 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 7.4 HIGH
HDF5 through 1.13.3 and/or 1.14.2 contains a stack buffer overflow in H5HG_read, resulting in denial of service or potential code execution.
CVE-2024-29163 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 7.4 HIGH
HDF5 through 1.14.3 contains a heap buffer overflow in H5T__bit_find, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
CVE-2024-29164 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 9.8 CRITICAL
HDF5 through 1.14.3 contains a stack buffer overflow in H5R__decode_heap, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
CVE-2024-29157 1 Hdfgroup 1 Hdf5 2025-04-18 N/A 9.8 CRITICAL
HDF5 through 1.14.3 contains a heap buffer overflow in H5HG_read, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
CVE-2025-2926 1 Hdfgroup 1 Hdf5 2025-04-17 1.7 LOW 3.3 LOW
A vulnerability was found in HDF5 up to 1.14.6 and classified as problematic. This issue affects the function H5O__cache_chk_serialize of the file src/H5Ocache.c. The manipulation leads to null pointer dereference. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.