CVE-2019-8398Out-of-bounds Read in Hdf5

CWE-125Out-of-bounds Read7 documents6 sources
Severity
6.5MEDIUMNVD
EPSS
0.3%
top 48.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 17
Latest updateMay 14

Description

An issue was discovered in the HDF HDF5 1.10.4 library. There is an out of bounds read in the function H5T_get_size in H5T.c.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages3 packages

debiandebian/hdf5< hdf5 1.14.5+repack-1 (forky)
Debianhdfgroup/hdf5< 1.14.5+repack-1+1
NVDhdfgroup/hdf51.10.4

🔴Vulnerability Details

2
GHSA
GHSA-j83w-vvqq-c35w: An issue was discovered in the HDF HDF5 12022-05-14
OSV
CVE-2019-8398: An issue was discovered in the HDF HDF5 12019-02-17

📋Vendor Advisories

2
Red Hat
hdf5: Out-of-Bounds Read in function H5T_get_size in H5T.c2019-01-27
Debian
CVE-2019-8398: hdf5 - An issue was discovered in the HDF HDF5 1.10.4 library. There is an out of bound...2019

💬Community

2
Bugzilla
CVE-2019-8398 hdf5: Out-of-Bounds Read in function H5T_get_size in H5T.c2019-02-18
Bugzilla
CVE-2019-8398 hdf5: Out-of-Bounds Read in function H5T_get_size in H5T.c [fedora-all]2019-02-18