CVE-2018-13867Out-of-bounds Read in Hdf5

Severity
9.8CRITICALNVD
EPSS
0.5%
top 32.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 10
Latest updateMay 14

Description

An issue was discovered in the HDF HDF5 1.8.20 library. There is an out of bounds read in the function H5F__accum_read in H5Faccum.c.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

NVDhdfgroup/hdf51.8.20

🔴Vulnerability Details

2
GHSA
GHSA-j8jr-chrh-qfrf: An issue was discovered in the HDF HDF5 12022-05-14
OSV
CVE-2018-13867: An issue was discovered in the HDF HDF5 12018-07-10

📋Vendor Advisories

1
Red Hat
hdf5: out of bounds read in the function H5F__accum_read in H5Faccum.c2018-07-10

💬Community

3
Bugzilla
CVE-2018-13867 CVE-2018-13871 CVE-2018-13872 CVE-2018-13873 CVE-2018-13874 CVE-2018-13875 CVE-2018-14460 hdf5: various flaws [fedora-all]2018-07-23
Bugzilla
CVE-2018-13867 CVE-2018-13871 CVE-2018-13872 CVE-2018-13873 CVE-2018-13874 CVE-2018-13875 CVE-2018-14460 hdf5: various flaws [epel-all]2018-07-23
Bugzilla
CVE-2018-13867 hdf5: out of bounds read in the function H5F__accum_read in H5Faccum.c2018-07-16