📦 Hdf5

by Hdfgroup

🔍 What is Hdf5?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-32608

CRITICAL CVSS 9.8 Oct 9, 2024

A memory corruption vulnerability in the HDF5 library's H5A__close function allows attackers to corrupt the instruction pointer, potentially leading to denial of service or arbitrary code execution. T...

CVE-2024-33874

CRITICAL CVSS 9.8 May 14, 2024

CVE-2024-33874 is a critical heap buffer overflow vulnerability in the HDF5 library's H5O__mtime_new_encode function. This allows attackers to execute arbitrary code or cause denial of service by expl...

CVE-2024-32621

CRITICAL CVSS 9.8 May 14, 2024

CVE-2024-32621 is a critical heap-based buffer overflow vulnerability in the HDF5 library that allows attackers to corrupt the instruction pointer and potentially execute arbitrary code. This affects ...

CVE-2024-32611

CRITICAL CVSS 9.8 May 14, 2024

CVE-2024-32611 is a critical vulnerability in the HDF5 library where uninitialized memory usage in attribute handling functions could lead to arbitrary code execution. This affects all applications th...

CVE-2024-32615

CRITICAL CVSS 9.8 May 14, 2024

CVE-2024-32615 is a critical heap-based buffer overflow vulnerability in the HDF5 library's n-bit decompression function. Attackers can exploit this to execute arbitrary code or crash applications by ...

CVE-2024-29164

CRITICAL CVSS 9.8 May 14, 2024

CVE-2024-29164 is a critical stack buffer overflow vulnerability in HDF5 library versions through 1.14.3. Exploitation can corrupt the instruction pointer, leading to denial of service or potential re...

CVE-2024-29159

CRITICAL CVSS 9.8 May 14, 2024

CVE-2024-29159 is a critical buffer overflow vulnerability in HDF5's scaleoffset filter that can corrupt the instruction pointer. This allows attackers to cause denial of service or potentially execut...

CVE-2024-29157

CRITICAL CVSS 9.8 May 14, 2024

CVE-2024-29157 is a critical heap buffer overflow vulnerability in HDF5 library versions through 1.14.3. Attackers can exploit this to corrupt the instruction pointer, potentially leading to denial of...

CVE-2026-26200

HIGH CVSS 7.8 Feb 19, 2026

This CVE describes a heap buffer overflow vulnerability in HDF5 software that allows attackers to trigger denial-of-service conditions through specially crafted HDF5 files. If successfully exploited, ...

CVE-2025-44904

HIGH CVSS 8.8 May 30, 2025

CVE-2025-44904 is a heap buffer overflow vulnerability in HDF5 library v1.14.6 that allows attackers to execute arbitrary code or cause denial of service by exploiting the H5VM_memcpyvv function. This...

CVE-2024-33877

HIGH CVSS 8.8 May 14, 2024

CVE-2024-33877 is a heap-based buffer overflow vulnerability in the HDF5 library's H5T__conv_struct_opt function. This allows attackers to execute arbitrary code or cause denial of service by providin...

CVE-2024-33873

HIGH CVSS 8.8 May 14, 2024

CVE-2024-33873 is a heap-based buffer overflow vulnerability in the HDF5 library's H5D__scatter_mem function. This allows attackers to execute arbitrary code or cause denial of service by providing sp...

CVE-2024-32619

HIGH CVSS 7.4 May 14, 2024

CVE-2024-32619 is a heap-based buffer overflow vulnerability in the HDF5 library's H5T_copy_reopen function that can corrupt the instruction pointer, potentially allowing arbitrary code execution. Thi...

CVE-2024-32623

HIGH CVSS 8.8 May 14, 2024

CVE-2024-32623 is a heap-based buffer overflow vulnerability in the HDF5 library's H5VM_array_fill function. This allows attackers to execute arbitrary code or cause denial of service by crafting mali...

CVE-2024-32613

HIGH CVSS 7.4 May 14, 2024

CVE-2024-32613 is a heap-based buffer over-read vulnerability in the HDF5 library's H5HL__fl_deserialize function. This allows attackers to read memory beyond allocated buffers, potentially exposing s...

CVE-2024-32617

HIGH CVSS 8.8 May 14, 2024

CVE-2024-32617 is a heap-based buffer over-read vulnerability in the HDF5 library that could allow attackers to read sensitive memory contents or cause denial of service. This affects any application ...

CVE-2024-32605

HIGH CVSS 8.8 May 14, 2024

This vulnerability in the HDF5 library allows attackers to read beyond allocated heap memory boundaries when processing specially crafted HDF5 files. It affects all applications that use HDF5 library ...

CVE-2024-32609

HIGH CVSS 7.5 May 14, 2024

This vulnerability in the HDF5 library allows attackers to cause stack consumption (stack overflow) through the H5E_printf_stack function, potentially leading to denial of service or arbitrary code ex...

CVE-2024-29161

HIGH CVSS 8.8 May 14, 2024

CVE-2024-29161 is a heap buffer overflow vulnerability in HDF5 library versions through 1.14.3 that can corrupt the instruction pointer when processing HDF5 files. This allows attackers to cause denia...

CVE-2024-29163

HIGH CVSS 7.4 May 14, 2024

This CVE describes a heap buffer overflow vulnerability in HDF5 library versions through 1.14.3. Attackers can exploit this to corrupt the instruction pointer, potentially leading to denial of service...

CVE-2020-18494

HIGH CVSS 8.8 Aug 22, 2023

CVE-2020-18494 is a buffer overflow vulnerability in HDF5 library's H5S_close function that allows remote attackers to execute arbitrary code by tricking users or systems into processing a maliciously...

CVE-2020-18232

HIGH CVSS 8.8 Aug 22, 2023

CVE-2020-18232 is a buffer overflow vulnerability in the HDF5 library's H5S_close function that allows remote attackers to execute arbitrary code by tricking users or systems into processing a special...

CVE-2021-46242

HIGH CVSS 8.8 Jan 21, 2022

CVE-2021-46242 is a heap-use-after-free vulnerability in HDF5 library's H5AC_unpin_entry component that could allow attackers to execute arbitrary code or cause denial of service. This affects applica...

CVE-2025-2309

MEDIUM CVSS 5.3 Mar 14, 2025

A critical heap-based buffer overflow vulnerability in HDF5 library's type conversion logic allows attackers with local access to potentially execute arbitrary code or crash applications. This affects...

CVE-2024-33876

MEDIUM CVSS 5.7 May 14, 2024

CVE-2024-33876 is a heap buffer overflow vulnerability in the HDF5 library's H5S__point_deserialize function. This allows attackers to potentially execute arbitrary code or cause denial of service by ...

CVE-2024-32607

MEDIUM CVSS 5.7 May 14, 2024

CVE-2024-32607 is a memory corruption vulnerability in the HDF5 library that can cause a segmentation fault (SEGV) when closing attributes, potentially allowing attackers to crash applications or exec...

CVE-2024-29166

MEDIUM CVSS 5.7 May 14, 2024

CVE-2024-29166 is a buffer overflow vulnerability in HDF5 library versions through 1.14.3 that can corrupt the instruction pointer when processing specially crafted HDF5 files. This could lead to deni...