VYPR

Hdf5

by Hdfgroup

Source repositories

CVEs (141)

  • CVE-2018-17436MedSep 24, 2018
    risk 0.42cvss 6.5epss 0.01

    ReadCode() in decompress.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service (invalid write access) via a crafted HDF5 file. This issue was triggered while converting a GIF file to an HDF file.

  • CVE-2018-17435MedSep 24, 2018
    risk 0.42cvss 6.5epss 0.01

    A heap-based buffer over-read in H5O_attr_decode() in H5Oattr.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service via a crafted HDF5 file. This issue was triggered while converting an HDF file to GIF file.

  • CVE-2018-17434MedSep 24, 2018
    risk 0.42cvss 6.5epss 0.02

    A SIGFPE signal is raised in the function apply_filters() of h5repack_filters.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service attack.

  • CVE-2018-17433MedSep 24, 2018
    risk 0.42cvss 6.5epss 0.01

    A heap-based buffer overflow in ReadGifImageDesc() in gifread.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service via a crafted HDF5 file. This issue was triggered while converting a GIF file to an HDF file.

  • CVE-2018-17432MedSep 24, 2018
    risk 0.42cvss 6.5epss 0.01

    A NULL pointer dereference in H5O_sdspace_encode() in H5Osdspace.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service via a crafted HDF5 file.

  • CVE-2018-17237MedSep 20, 2018
    risk 0.42cvss 6.5epss 0.01

    A SIGFPE signal is raised in the function H5D__chunk_set_info_real() of H5Dchunk.c in the HDF HDF5 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. This issue is different from CVE-2018-11207.

  • CVE-2018-17234MedSep 20, 2018
    risk 0.42cvss 6.5epss 0.01

    Memory leak in the H5O__chunk_deserialize() function in H5Ocache.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service (memory consumption) via a crafted HDF5 file.

  • CVE-2018-17233MedSep 20, 2018
    risk 0.42cvss 6.5epss 0.02

    A SIGFPE signal is raised in the function H5D__create_chunk_file_map_hyper() of H5Dchunk.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service…

  • CVE-2018-15671MedAug 21, 2018
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in the HDF HDF5 1.10.2 library. Excessive stack consumption has been detected in the function H5P__get_cb() in H5Pint.c during an attempted parse of a crafted HDF file. This results in denial of service.

  • CVE-2018-11207MedMay 16, 2018
    risk 0.42cvss 6.5epss 0.02

    A division by zero was discovered in H5D__chunk_init in H5Dchunk.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.

  • CVE-2018-11204MedMay 16, 2018
    risk 0.42cvss 6.5epss 0.02

    A NULL pointer dereference was discovered in H5O__chunk_deserialize in H5Ocache.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.

  • CVE-2018-11203MedMay 16, 2018
    risk 0.42cvss 6.5epss 0.02

    A division by zero was discovered in H5D__btree_decode_key in H5Dbtree.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.

  • CVE-2018-11202MedMay 16, 2018
    risk 0.42cvss 6.5epss 0.02

    A NULL pointer dereference was discovered in H5S_hyper_make_spans in H5Shyper.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.

  • CVE-2017-17508MedDec 11, 2017
    risk 0.42cvss 6.5epss 0.01

    In HDF5 1.10.1, there is a divide-by-zero vulnerability in the function H5T_set_loc in the H5T.c file in libhdf5.a. For example, h5dump would crash when someone opens a crafted hdf5 file.

  • CVE-2017-17507MedDec 11, 2017
    risk 0.42cvss 6.5epss 0.01

    In HDF5 1.10.1, there is an out of bounds read vulnerability in the function H5T_conv_struct_opt in H5Tconv.c in libhdf5.a. For example, h5dump would crash when someone opens a crafted hdf5 file.

  • CVE-2017-17506MedDec 11, 2017
    risk 0.42cvss 6.5epss 0.01

    In HDF5 1.10.1, there is an out of bounds read vulnerability in the function H5Opline_pline_decode in H5Opline.c in libhdf5.a. For example, h5dump would crash when someone opens a crafted hdf5 file.

  • CVE-2017-17505MedDec 11, 2017
    risk 0.42cvss 6.5epss 0.01

    In HDF5 1.10.1, there is a NULL pointer dereference in the function H5O_pline_decode in the H5Opline.c file in libhdf5.a. For example, h5dump would crash when someone opens a crafted hdf5 file.

  • CVE-2024-33876MedMay 14, 2024
    risk 0.37cvss 5.7epss 0.00

    HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize in H5Spoint.c.

  • CVE-2024-33875MedMay 14, 2024
    risk 0.37cvss 5.7epss 0.00

    HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_encode in H5Olayout.c, resulting in the corruption of the instruction pointer.

  • CVE-2024-32610MedMay 14, 2024
    risk 0.37cvss 5.7epss 0.00

    HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in a corrupted instruction pointer.

Page 5 of 8