Debian Hdf5 vulnerabilities

120 known vulnerabilities affecting debian/hdf5.

Total CVEs
120
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH7MEDIUM3LOW110

Vulnerabilities

Page 3 of 6
CVE-2024-32615LOWCVSS 9.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32615 [CRITICAL] CVE-2024-32615: hdf5 - HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5Z__nbit_d... HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5Z__nbit_decompress_one_byte in H5Znbit.c, caused by the earlier use of an initialized pointer. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32608LOWCVSS 9.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32608 [CRITICAL] CVE-2024-32608: hdf5 - HDF5 library through 1.14.3 has memory corruption in H5A__close resulting in the... HDF5 library through 1.14.3 has memory corruption in H5A__close resulting in the corruption of the instruction pointer and causing denial of service or potential code execution. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32623LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32623 [HIGH] CVE-2024-32623: hdf5 - HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5VM_array_... HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5VM_array_fill in H5VM.c (called from H5S_select_elements in H5Spoint.c). Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-33874LOWCVSS 9.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-33874 [CRITICAL] CVE-2024-33874: hdf5 - HDF5 Library through 1.14.3 has a heap buffer overflow in H5O__mtime_new_encode ... HDF5 Library through 1.14.3 has a heap buffer overflow in H5O__mtime_new_encode in H5Omtime.c. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-29162LOWCVSS 7.4fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-29162 [HIGH] CVE-2024-29162: hdf5 - HDF5 through 1.13.3 and/or 1.14.2 contains a stack buffer overflow in H5HG_read,... HDF5 through 1.13.3 and/or 1.14.2 contains a stack buffer overflow in H5HG_read, resulting in denial of service or potential code execution. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32621LOWCVSS 9.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32621 [CRITICAL] CVE-2024-32621: hdf5 - HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5HG_read i... HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5HG_read in H5HG.c (called from H5VL__native_blob_get in H5VLnative_blob.c), resulting in the corruption of the instruction pointer. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+rep
debian
CVE-2024-32610LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32610 [MEDIUM] CVE-2024-32610: hdf5 - HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in ... HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in a corrupted instruction pointer. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-33875LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-33875 [MEDIUM] CVE-2024-33875: hdf5 - HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_enco... HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_encode in H5Olayout.c, resulting in the corruption of the instruction pointer. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-29165LOWCVSS 7.4fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-29165 [HIGH] CVE-2024-29165: hdf5 - HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_fletcher32, result... HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_fletcher32, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32607LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32607 [MEDIUM] CVE-2024-32607: hdf5 - HDF5 Library through 1.14.3 has a SEGV in H5A__close in H5Aint.c, resulting in t... HDF5 Library through 1.14.3 has a SEGV in H5A__close in H5Aint.c, resulting in the corruption of the instruction pointer. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32617LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32617 [HIGH] CVE-2024-32617: hdf5 - HDF5 Library through 1.14.3 contains a heap-based buffer over-read caused by the... HDF5 Library through 1.14.3 contains a heap-based buffer over-read caused by the unsafe use of strdup in H5MM_xstrdup in H5MM.c (called from H5G__ent_to_link in H5Glink.c). Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32606LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32606 [MEDIUM] CVE-2024-32606: hdf5 - HDF5 Library through 1.14.3 may attempt to dereference uninitialized values in h... HDF5 Library through 1.14.3 may attempt to dereference uninitialized values in h5tools_str_sprint in tools/lib/h5tools_str.c (called from h5tools_dump_simple_data in tools/lib/h5tools_dump.c). Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32624LOWCVSS 7.4fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32624 [HIGH] CVE-2024-32624: hdf5 - HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_me... HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__conv_ref in H5Tconv.c), resulting in the corruption of the instruction pointer. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-29163LOWCVSS 7.4fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-29163 [HIGH] CVE-2024-29163: hdf5 - HDF5 through 1.14.3 contains a heap buffer overflow in H5T__bit_find, resulting ... HDF5 through 1.14.3 contains a heap buffer overflow in H5T__bit_find, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-29160LOWCVSS 7.4fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-29160 [HIGH] CVE-2024-29160: hdf5 - HDF5 through 1.14.3 contains a heap buffer overflow in H5HG__cache_heap_deserial... HDF5 through 1.14.3 contains a heap buffer overflow in H5HG__cache_heap_deserialize, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-33876LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-33876 [MEDIUM] CVE-2024-33876: hdf5 - HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize... HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize in H5Spoint.c. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32612LOWCVSS 7.4fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32612 [HIGH] CVE-2024-32612: hdf5 - HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5HL__fl_d... HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5HL__fl_deserialize in H5HLcache.c, resulting in the corruption of the instruction pointer, a different vulnerability than CVE-2024-32613. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+
debian
CVE-2024-32620LOWCVSS 7.4fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32620 [HIGH] CVE-2024-32620: hdf5 - HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5F_addr_d... HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5F_addr_decode_len in H5Fint.c, resulting in the corruption of the instruction pointer. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-33873LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-33873 [HIGH] CVE-2024-33873: hdf5 - HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5D__scatter_mem... HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5D__scatter_mem in H5Dscatgath.c. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-29164LOWCVSS 9.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-29164 [CRITICAL] CVE-2024-29164: hdf5 - HDF5 through 1.14.3 contains a stack buffer overflow in H5R__decode_heap, result... HDF5 through 1.14.3 contains a stack buffer overflow in H5R__decode_heap, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian