CVE-2018-13875Out-of-bounds Read in Hdf5

Severity
7.8HIGHNVD
EPSS
0.3%
top 49.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 10
Latest updateMay 14

Description

An issue was discovered in the HDF HDF5 1.8.20 library. There is an out-of-bounds read in the function H5VM_memcpyvv in H5VM.c.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages1 packages

NVDhdfgroup/hdf51.8.20

🔴Vulnerability Details

2
GHSA
GHSA-vmrq-hxc3-5x27: An issue was discovered in the HDF HDF5 12022-05-14
OSV
CVE-2018-13875: An issue was discovered in the HDF HDF5 12018-07-10

📋Vendor Advisories

1
Red Hat
hdf5: out-of-bounds read in the function H5VM_memcpyvv in H5VM.c2018-07-10

💬Community

3
Bugzilla
CVE-2018-13867 CVE-2018-13871 CVE-2018-13872 CVE-2018-13873 CVE-2018-13874 CVE-2018-13875 CVE-2018-14460 hdf5: various flaws [fedora-all]2018-07-23
Bugzilla
CVE-2018-13867 CVE-2018-13871 CVE-2018-13872 CVE-2018-13873 CVE-2018-13874 CVE-2018-13875 CVE-2018-14460 hdf5: various flaws [epel-all]2018-07-23
Bugzilla
CVE-2018-13875 hdf5: out-of-bounds read in the function H5VM_memcpyvv in H5VM.c2018-07-16