VYPR
Medium severity5.5OSV Advisory· Published Jul 27, 2026· Updated Aug 18, 2026

CVE-2026-17573

CVE-2026-17573

Description

A double free vulnerability was discovered in the HDF5 library. Processing a crafted HDF5 file containing an oversized chunk size field via h5repack may cause the application to abort due to a double free.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Hdfgroup/Hdf53 versions
    cpe:2.3:a:hdfgroup:hdf5:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:hdfgroup:hdf5:*:*:*:*:*:*:*:*range: <2.2.0
    • (no CPE)range: 2.1.1, hdf5_2.1.0, 2.1.0, …
    • (no CPE)

Patches

Vulnerability mechanics

References

1

News mentions

1