Debian Hdf5 vulnerabilities

120 known vulnerabilities affecting debian/hdf5.

Total CVEs
120
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH7MEDIUM3LOW110

Vulnerabilities

Page 4 of 6
CVE-2024-32614LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32614 [HIGH] CVE-2024-32614: hdf5 - HDF5 Library through 1.14.3 has a SEGV in H5VM_memcpyvv in H5VM.c. HDF5 Library through 1.14.3 has a SEGV in H5VM_memcpyvv in H5VM.c. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-33877LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-33877 [HIGH] CVE-2024-33877: hdf5 - HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct... HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct_opt in H5Tconv.c. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2024-32605LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2024
CVE-2024-32605 [HIGH] CVE-2024-32605: hdf5 - HDF5 Library through 1.14.3 has a heap-based buffer over-read in H5VM_memcpyvv i... HDF5 Library through 1.14.3 has a heap-based buffer over-read in H5VM_memcpyvv in H5VM.c (called from H5D__compact_readvv in H5Dcompact.c). Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2022-25972LOWCVSS 7.8fixed in hdf5 1.10.10+repack-1 (forky)2022
CVE-2022-25972 [HIGH] CVE-2022-25972: hdf5 - An out-of-bounds write vulnerability exists in the gif2h5 functionality of HDF5 ... An out-of-bounds write vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.10.10+repack-1) sid: resolved (fixed in 1.10.10+repack-1) trixie: res
debian
CVE-2022-25942LOWCVSS 7.8fixed in hdf5 1.10.10+repack-1 (forky)2022
CVE-2022-25942 [HIGH] CVE-2022-25942: hdf5 - An out-of-bounds read vulnerability exists in the gif2h5 functionality of HDF5 G... An out-of-bounds read vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.10.10+repack-1) sid: resolved (fixed in 1.10.10+repack-1) trixie: reso
debian
CVE-2022-26061LOWCVSS 7.8fixed in hdf5 1.10.10+repack-1 (forky)2022
CVE-2022-26061 [HIGH] CVE-2022-26061: hdf5 - A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of... A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.10.10+repack-1) sid: resolved (fixed in 1.10.10+repack-1) trixi
debian
CVE-2021-45833LOWCVSS 5.5fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-45833 [MEDIUM] CVE-2021-45833: hdf5 - A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 via the H5D_... A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 via the H5D__create_chunk_file_map_hyper function in /hdf5/src/H5Dchunk.c, which causes a Denial of Service (context-dependent). Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2021-45830LOWCVSS 5.5fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-45830 [MEDIUM] CVE-2021-45830: hdf5 - A heap-based buffer overflow vulnerability exists in HDF5 1.13.1-1 via H5F_addr_... A heap-based buffer overflow vulnerability exists in HDF5 1.13.1-1 via H5F_addr_decode_len in /hdf5/src/H5Fint.c, which could cause a Denial of Service. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2021-37501LOWCVSS 7.5fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-37501 [HIGH] CVE-2021-37501: hdf5 - Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allo... Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of service via h5tools_str_sprint in /hdf5/tools/lib/h5tools_str.c. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2021-45832LOWCVSS 5.52021
CVE-2021-45832 [MEDIUM] CVE-2021-45832: hdf5 - A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 at at hdf5/s... A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 at at hdf5/src/H5Eint.c, which causes a Denial of Service (context-dependent). Scope: local bookworm: open bullseye: open forky: open sid: open trixie: open
debian
CVE-2021-46242LOWCVSS 8.8fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-46242 [HIGH] CVE-2021-46242: hdf5 - HDF5 v1.13.1-1 was discovered to contain a heap-use-after free via the component... HDF5 v1.13.1-1 was discovered to contain a heap-use-after free via the component H5AC_unpin_entry. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repack-1)
debian
CVE-2021-46244LOWCVSS 6.5fixed in hdf5 1.14.5+repack-1 (forky)2021
CVE-2021-46244 [MEDIUM] CVE-2021-46244: hdf5 - A Divide By Zero vulnerability exists in HDF5 v1.13.1-1 vis the function H5T__co... A Divide By Zero vulnerability exists in HDF5 v1.13.1-1 vis the function H5T__complete_copy () at /hdf5/src/H5T.c. This vulnerability causes an aritmetic exception, leading to a Denial of Service (DoS). Scope: local bookworm: open bullseye: open forky: resolved (fixed in 1.14.5+repack-1) sid: resolved (fixed in 1.14.5+repack-1) trixie: resolved (fixed in 1.14.5+repac
debian
CVE-2021-46243LOWCVSS 6.52021
CVE-2021-46243 [MEDIUM] CVE-2021-46243: hdf5 - An untrusted pointer dereference vulnerability exists in HDF5 v1.13.1-1 via the ... An untrusted pointer dereference vulnerability exists in HDF5 v1.13.1-1 via the function H5O__dtype_decode_helper () at hdf5/src/H5Odtype.c. This vulnerability can lead to a Denial of Service (DoS). Scope: local bookworm: open bullseye: open forky: open sid: open trixie: open
debian
CVE-2021-45829LOWCVSS 5.52021
CVE-2021-45829 [MEDIUM] CVE-2021-45829: hdf5 - HDF5 1.13.1-1 is affected by: segmentation fault, which causes a Denial of Servi... HDF5 1.13.1-1 is affected by: segmentation fault, which causes a Denial of Service. Scope: local bookworm: open bullseye: open forky: open sid: open trixie: open
debian
CVE-2020-10810LOWCVSS 5.5fixed in hdf5 1.10.8+repack-1 (bookworm)2020
CVE-2020-10810 [MEDIUM] CVE-2020-10810: hdf5 - An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exist... An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exists in the function H5AC_unpin_entry() located in H5AC.c. It allows an attacker to cause Denial of Service. Scope: local bookworm: resolved (fixed in 1.10.8+repack-1) bullseye: open forky: resolved (fixed in 1.10.8+repack-1) sid: resolved (fixed in 1.10.8+repack-1) trixie: resolved (fixed i
debian
CVE-2020-18494LOWCVSS 8.82020
CVE-2020-18494 [HIGH] CVE-2020-18494: hdf5 - Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allo... Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allows remote attackers to run arbitrary code via creation of crafted file. Scope: local bookworm: open bullseye: open forky: open sid: open trixie: open
debian
CVE-2020-18232LOWCVSS 8.82020
CVE-2020-18232 [HIGH] CVE-2020-18232: hdf5 - Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allo... Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allows remote attackers to run arbitrary code via creation of crafted file. Scope: local bookworm: open bullseye: open forky: open sid: open trixie: open
debian
CVE-2020-10811LOWCVSS 5.5fixed in hdf5 1.10.8+repack-1 (bookworm)2020
CVE-2020-10811 [MEDIUM] CVE-2020-10811: hdf5 - An issue was discovered in HDF5 through 1.12.0. A heap-based buffer over-read ex... An issue was discovered in HDF5 through 1.12.0. A heap-based buffer over-read exists in the function H5O__layout_decode() located in H5Olayout.c. It allows an attacker to cause Denial of Service. Scope: local bookworm: resolved (fixed in 1.10.8+repack-1) bullseye: open forky: resolved (fixed in 1.10.8+repack-1) sid: resolved (fixed in 1.10.8+repack-1) trixie: resolve
debian
CVE-2020-10809LOWCVSS 5.52020
CVE-2020-10809 [MEDIUM] CVE-2020-10809: hdf5 - An issue was discovered in HDF5 through 1.12.0. A heap-based buffer overflow exi... An issue was discovered in HDF5 through 1.12.0. A heap-based buffer overflow exists in the function Decompress() located in decompress.c. It can be triggered by sending a crafted file to the gif2h5 binary. It allows an attacker to cause Denial of Service. Scope: local bookworm: open bullseye: open forky: open sid: open trixie: open
debian
CVE-2020-10812LOWCVSS 5.52020
CVE-2020-10812 [MEDIUM] CVE-2020-10812: hdf5 - An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exist... An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exists in the function H5F_get_nrefs() located in H5Fquery.c. It allows an attacker to cause Denial of Service. Scope: local bookworm: open bullseye: open forky: open sid: open trixie: open
debian