Debian Hdf5 vulnerabilities
120 known vulnerabilities affecting debian/hdf5.
Total CVEs
120
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH7MEDIUM3LOW110
Vulnerabilities
Page 4 of 6
CVE-2024-32614LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32614 [HIGH] CVE-2024-32614: hdf5 - HDF5 Library through 1.14.3 has a SEGV in H5VM_memcpyvv in H5VM.c.
HDF5 Library through 1.14.3 has a SEGV in H5VM_memcpyvv in H5VM.c.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.14.5+repack-1)
sid: resolved (fixed in 1.14.5+repack-1)
trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-33877LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-33877 [HIGH] CVE-2024-33877: hdf5 - HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct...
HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct_opt in H5Tconv.c.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.14.5+repack-1)
sid: resolved (fixed in 1.14.5+repack-1)
trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32605LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32605 [HIGH] CVE-2024-32605: hdf5 - HDF5 Library through 1.14.3 has a heap-based buffer over-read in H5VM_memcpyvv i...
HDF5 Library through 1.14.3 has a heap-based buffer over-read in H5VM_memcpyvv in H5VM.c (called from H5D__compact_readvv in H5Dcompact.c).
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.14.5+repack-1)
sid: resolved (fixed in 1.14.5+repack-1)
trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2022-25972LOWCVSS 7.8fixed in hdf5 1.10.10+repack-1 (forky)2022
CVE-2022-25972 [HIGH] CVE-2022-25972: hdf5 - An out-of-bounds write vulnerability exists in the gif2h5 functionality of HDF5 ...
An out-of-bounds write vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.10.10+repack-1)
sid: resolved (fixed in 1.10.10+repack-1)
trixie: res
debian
CVE-2022-25942LOWCVSS 7.8fixed in hdf5 1.10.10+repack-1 (forky)2022
CVE-2022-25942 [HIGH] CVE-2022-25942: hdf5 - An out-of-bounds read vulnerability exists in the gif2h5 functionality of HDF5 G...
An out-of-bounds read vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.10.10+repack-1)
sid: resolved (fixed in 1.10.10+repack-1)
trixie: reso
debian
CVE-2022-26061LOWCVSS 7.8fixed in hdf5 1.10.10+repack-1 (forky)2022
CVE-2022-26061 [HIGH] CVE-2022-26061: hdf5 - A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of...
A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.10.10+repack-1)
sid: resolved (fixed in 1.10.10+repack-1)
trixi
debian
CVE-2021-45833LOWCVSS 5.5fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-45833 [MEDIUM] CVE-2021-45833: hdf5 - A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 via the H5D_...
A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 via the H5D__create_chunk_file_map_hyper function in /hdf5/src/H5Dchunk.c, which causes a Denial of Service (context-dependent).
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.14.5+repack-1)
sid: resolved (fixed in 1.14.5+repack-1)
trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2021-45830LOWCVSS 5.5fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-45830 [MEDIUM] CVE-2021-45830: hdf5 - A heap-based buffer overflow vulnerability exists in HDF5 1.13.1-1 via H5F_addr_...
A heap-based buffer overflow vulnerability exists in HDF5 1.13.1-1 via H5F_addr_decode_len in /hdf5/src/H5Fint.c, which could cause a Denial of Service.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.14.5+repack-1)
sid: resolved (fixed in 1.14.5+repack-1)
trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2021-37501LOWCVSS 7.5fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-37501 [HIGH] CVE-2021-37501: hdf5 - Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allo...
Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of service via h5tools_str_sprint in /hdf5/tools/lib/h5tools_str.c.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.14.5+repack-1)
sid: resolved (fixed in 1.14.5+repack-1)
trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2021-45832LOWCVSS 5.52021
CVE-2021-45832 [MEDIUM] CVE-2021-45832: hdf5 - A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 at at hdf5/s...
A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 at at hdf5/src/H5Eint.c, which causes a Denial of Service (context-dependent).
Scope: local
bookworm: open
bullseye: open
forky: open
sid: open
trixie: open
debian
CVE-2021-46242LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-46242 [HIGH] CVE-2021-46242: hdf5 - HDF5 v1.13.1-1 was discovered to contain a heap-use-after free via the component...
HDF5 v1.13.1-1 was discovered to contain a heap-use-after free via the component H5AC_unpin_entry.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.14.5+repack-1)
sid: resolved (fixed in 1.14.5+repack-1)
trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2021-46244LOWCVSS 6.5fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-46244 [MEDIUM] CVE-2021-46244: hdf5 - A Divide By Zero vulnerability exists in HDF5 v1.13.1-1 vis the function H5T__co...
A Divide By Zero vulnerability exists in HDF5 v1.13.1-1 vis the function H5T__complete_copy () at /hdf5/src/H5T.c. This vulnerability causes an aritmetic exception, leading to a Denial of Service (DoS).
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.14.5+repack-1)
sid: resolved (fixed in 1.14.5+repack-1)
trixie: resolved (fixed in 1.14.5+repac
debian
CVE-2021-46243LOWCVSS 6.52021
CVE-2021-46243 [MEDIUM] CVE-2021-46243: hdf5 - An untrusted pointer dereference vulnerability exists in HDF5 v1.13.1-1 via the ...
An untrusted pointer dereference vulnerability exists in HDF5 v1.13.1-1 via the function H5O__dtype_decode_helper () at hdf5/src/H5Odtype.c. This vulnerability can lead to a Denial of Service (DoS).
Scope: local
bookworm: open
bullseye: open
forky: open
sid: open
trixie: open
debian
CVE-2021-45829LOWCVSS 5.52021
CVE-2021-45829 [MEDIUM] CVE-2021-45829: hdf5 - HDF5 1.13.1-1 is affected by: segmentation fault, which causes a Denial of Servi...
HDF5 1.13.1-1 is affected by: segmentation fault, which causes a Denial of Service.
Scope: local
bookworm: open
bullseye: open
forky: open
sid: open
trixie: open
debian
CVE-2020-10810LOWCVSS 5.5fixed in hdf5 1.10.8+repack-1 (bookworm)2020
CVE-2020-10810 [MEDIUM] CVE-2020-10810: hdf5 - An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exist...
An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exists in the function H5AC_unpin_entry() located in H5AC.c. It allows an attacker to cause Denial of Service.
Scope: local
bookworm: resolved (fixed in 1.10.8+repack-1)
bullseye: open
forky: resolved (fixed in 1.10.8+repack-1)
sid: resolved (fixed in 1.10.8+repack-1)
trixie: resolved (fixed i
debian
CVE-2020-18494LOWCVSS 8.82020
CVE-2020-18494 [HIGH] CVE-2020-18494: hdf5 - Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allo...
Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allows remote attackers to run arbitrary code via creation of crafted file.
Scope: local
bookworm: open
bullseye: open
forky: open
sid: open
trixie: open
debian
CVE-2020-18232LOWCVSS 8.82020
CVE-2020-18232 [HIGH] CVE-2020-18232: hdf5 - Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allo...
Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allows remote attackers to run arbitrary code via creation of crafted file.
Scope: local
bookworm: open
bullseye: open
forky: open
sid: open
trixie: open
debian
CVE-2020-10811LOWCVSS 5.5fixed in hdf5 1.10.8+repack-1 (bookworm)2020
CVE-2020-10811 [MEDIUM] CVE-2020-10811: hdf5 - An issue was discovered in HDF5 through 1.12.0. A heap-based buffer over-read ex...
An issue was discovered in HDF5 through 1.12.0. A heap-based buffer over-read exists in the function H5O__layout_decode() located in H5Olayout.c. It allows an attacker to cause Denial of Service.
Scope: local
bookworm: resolved (fixed in 1.10.8+repack-1)
bullseye: open
forky: resolved (fixed in 1.10.8+repack-1)
sid: resolved (fixed in 1.10.8+repack-1)
trixie: resolve
debian
CVE-2020-10809LOWCVSS 5.52020
CVE-2020-10809 [MEDIUM] CVE-2020-10809: hdf5 - An issue was discovered in HDF5 through 1.12.0. A heap-based buffer overflow exi...
An issue was discovered in HDF5 through 1.12.0. A heap-based buffer overflow exists in the function Decompress() located in decompress.c. It can be triggered by sending a crafted file to the gif2h5 binary. It allows an attacker to cause Denial of Service.
Scope: local
bookworm: open
bullseye: open
forky: open
sid: open
trixie: open
debian
CVE-2020-10812LOWCVSS 5.52020
CVE-2020-10812 [MEDIUM] CVE-2020-10812: hdf5 - An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exist...
An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exists in the function H5F_get_nrefs() located in H5Fquery.c. It allows an attacker to cause Denial of Service.
Scope: local
bookworm: open
bullseye: open
forky: open
sid: open
trixie: open
debian