cbcvebase.

Debian Hdf5 vulnerabilities

77 known vulnerabilities affecting debian/hdf5.

Total CVEs
77
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH6MEDIUM3LOW68

Vulnerabilities

Page 4 of 4
CVE-2019-8398P4LOWCVSS 6.5fixed in hdf5 1.14.5+repack-1 (forky)2019
CVE-2019-8398 [MEDIUM] CVE-2019-8398: hdf5 - An issue was discovered in the HDF HDF5 1.10.4 library. There is an out of bound... An issue was discovered in the HDF HDF5 1.10.4 library. There is an out of bounds read in the function H5T_get_size in H5T.c. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2017-17507P4LOWCVSS 6.5fixed in hdf5 1.14.5+repack-1 (forky)2017
CVE-2017-17507 [MEDIUM] CVE-2017-17507: hdf5 - In HDF5 1.10.1, there is an out of bounds read vulnerability in the function H5T... In HDF5 1.10.1, there is an out of bounds read vulnerability in the function H5T_conv_struct_opt in H5Tconv.c in libhdf5.a. For example, h5dump would crash when someone opens a crafted hdf5 file. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-33875P4LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-33875 [MEDIUM] CVE-2024-33875: hdf5 - HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_enco... HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_encode in H5Olayout.c, resulting in the corruption of the instruction pointer. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-33876P4LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-33876 [MEDIUM] CVE-2024-33876: hdf5 - HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize... HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize in H5Spoint.c. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-29166P4LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-29166 [MEDIUM] CVE-2024-29166: hdf5 - HDF5 through 1.14.3 contains a buffer overflow in H5O__linfo_decode, resulting i... HDF5 through 1.14.3 contains a buffer overflow in H5O__linfo_decode, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2019-8396P4LOWCVSS 6.5fixed in hdf5 1.14.5+repack-1 (forky)2019
CVE-2019-8396 [MEDIUM] CVE-2019-8396: hdf5 - A buffer overflow in H5O__layout_encode in H5Olayout.c in the HDF HDF5 through 1... A buffer overflow in H5O__layout_encode in H5Olayout.c in the HDF HDF5 through 1.10.4 library allows attackers to cause a denial of service via a crafted HDF5 file. This issue was triggered while repacking an HDF5 file, aka "Invalid write of size 2." Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+rep
debian
CVE-2018-17435P4LOWCVSS 6.5fixed in hdf5 1.10.7+repack-1 (bookworm)2018
CVE-2018-17435 [MEDIUM] CVE-2018-17435: hdf5 - A heap-based buffer over-read in H5O_attr_decode() in H5Oattr.c in the HDF HDF5 ... A heap-based buffer over-read in H5O_attr_decode() in H5Oattr.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service via a crafted HDF5 file. This issue was triggered while converting an HDF file to GIF file. Scope: local bookworm: resolved (fixed in 1.10.7+repack-1) bullseye: open forky: resolved (fixed in 1.10.7+repack-1) sid: resolv
debian
CVE-2024-32607P4LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32607 [MEDIUM] CVE-2024-32607: hdf5 - HDF5 Library through 1.14.3 has a SEGV in H5A__close in H5Aint.c, resulting in t... HDF5 Library through 1.14.3 has a SEGV in H5A__close in H5Aint.c, resulting in the corruption of the instruction pointer. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2018-17437P4LOWCVSS 6.5fixed in hdf5 1.10.6+repack-2 (bookworm)2018
CVE-2018-17437 [MEDIUM] CVE-2018-17437: hdf5 - Memory leak in the H5O_dtype_decode_helper() function in H5Odtype.c in the HDF H... Memory leak in the H5O_dtype_decode_helper() function in H5Odtype.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service (memory consumption) via a crafted HDF5 file. Scope: local bookworm: resolved (fixed in 1.10.6+repack-2) bullseye: resolved (fixed in 1.10.6+repack-2) forky: resolved (fixed in 1.10.6+repack-2) sid: resolved (fixed i
debian
CVE-2018-17234P4LOWCVSS 6.5fixed in hdf5 1.10.6+repack-2 (bookworm)2018
CVE-2018-17234 [MEDIUM] CVE-2018-17234: hdf5 - Memory leak in the H5O__chunk_deserialize() function in H5Ocache.c in the HDF HD... Memory leak in the H5O__chunk_deserialize() function in H5Ocache.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service (memory consumption) via a crafted HDF5 file. Scope: local bookworm: resolved (fixed in 1.10.6+repack-2) bullseye: resolved (fixed in 1.10.6+repack-2) forky: resolved (fixed in 1.10.6+repack-2) sid: resolved (fixed in
debian
CVE-2018-17432P4LOWCVSS 6.5fixed in hdf5 1.10.8+repack-1 (bookworm)2018
CVE-2018-17432 [MEDIUM] CVE-2018-17432: hdf5 - A NULL pointer dereference in H5O_sdspace_encode() in H5Osdspace.c in the HDF HD... A NULL pointer dereference in H5O_sdspace_encode() in H5Osdspace.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service via a crafted HDF5 file. Scope: local bookworm: resolved (fixed in 1.10.8+repack-1) bullseye: open forky: resolved (fixed in 1.10.8+repack-1) sid: resolved (fixed in 1.10.8+repack-1) trixie: resolved (fixed in 1.10.8+
debian
CVE-2024-32610P4LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32610 [MEDIUM] CVE-2024-32610: hdf5 - HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in ... HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in a corrupted instruction pointer. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32606P4LOWCVSS 5.7fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32606 [MEDIUM] CVE-2024-32606: hdf5 - HDF5 Library through 1.14.3 may attempt to dereference uninitialized values in h... HDF5 Library through 1.14.3 may attempt to dereference uninitialized values in h5tools_str_sprint in tools/lib/h5tools_str.c (called from h5tools_dump_simple_data in tools/lib/h5tools_dump.c). Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2021-45830P4LOWCVSS 5.5fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-45830 [MEDIUM] CVE-2021-45830: hdf5 - A heap-based buffer overflow vulnerability exists in HDF5 1.13.1-1 via H5F_addr_... A heap-based buffer overflow vulnerability exists in HDF5 1.13.1-1 via H5F_addr_decode_len in /hdf5/src/H5Fint.c, which could cause a Denial of Service. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2021-45833P4LOWCVSS 5.5fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-45833 [MEDIUM] CVE-2021-45833: hdf5 - A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 via the H5D_... A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 via the H5D__create_chunk_file_map_hyper function in /hdf5/src/H5Dchunk.c, which causes a Denial of Service (context-dependent). Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2020-10811P4LOWCVSS 5.5fixed in hdf5 1.10.8+repack-1 (bookworm)2020
CVE-2020-10811 [MEDIUM] CVE-2020-10811: hdf5 - An issue was discovered in HDF5 through 1.12.0. A heap-based buffer over-read ex... An issue was discovered in HDF5 through 1.12.0. A heap-based buffer over-read exists in the function H5O__layout_decode() located in H5Olayout.c. It allows an attacker to cause Denial of Service. Scope: local bookworm: resolved (fixed in 1.10.8+repack-1) bullseye: open forky: resolved (fixed in 1.10.8+repack-1) sid: resolved (fixed in 1.10.8+repack-1) trixie: resolve
debian
CVE-2020-10810P4LOWCVSS 5.5fixed in hdf5 1.10.8+repack-1 (bookworm)2020
CVE-2020-10810 [MEDIUM] CVE-2020-10810: hdf5 - An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exist... An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exists in the function H5AC_unpin_entry() located in H5AC.c. It allows an attacker to cause Denial of Service. Scope: local bookworm: resolved (fixed in 1.10.8+repack-1) bullseye: open forky: resolved (fixed in 1.10.8+repack-1) sid: resolved (fixed in 1.10.8+repack-1) trixie: resolved (fixed i
debian
Debian Hdf5 vulnerabilities | cvebase