CVE-2024-32615
9.8CRITICALHDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5Z__nbit_decompress_one_byte in H5Znbit.c, caused by the earlier use of an initialized pointer.
Published: 5/14/2024Updated: 4/18/2025
Description
HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5Z__nbit_decompress_one_byte in H5Znbit.c, caused by the earlier use of an initialized pointer.
AI AnalysisPowered by AI
Affected Products
hdfgrouphdf5
References
- https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/Issue TrackingVendor Advisory
- https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/Issue TrackingVendor Advisory
- https://github.com/HDFGroup/cve_hdf5/blob/main/CVE_list.mdThird Party Advisory