Hdfgroup Hdf5 vulnerabilities
133 known vulnerabilities affecting hdfgroup/hdf5.
Total CVEs
133
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL19HIGH55MEDIUM54LOW5
Vulnerabilities
Page 7 of 7
CVE-2025-7068P4MEDIUMCVSS 5.5v1.14.62025-07-04
CVE-2025-7068 [MEDIUM] CWE-401 CVE-2025-7068: A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affe
A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5FL__malloc of the file src/H5FL.c. The manipulation leads to memory leak. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.
nvd
CVE-2020-10809P4MEDIUMCVSS 5.5≤ 1.12.02020-03-22
CVE-2020-10809 [MEDIUM] CWE-787 CVE-2020-10809: An issue was discovered in HDF5 through 1.12.0. A heap-based buffer overflow exists in the function
An issue was discovered in HDF5 through 1.12.0. A heap-based buffer overflow exists in the function Decompress() located in decompress.c. It can be triggered by sending a crafted file to the gif2h5 binary. It allows an attacker to cause Denial of Service.
nvd
CVE-2021-45830P4MEDIUMCVSS 5.5v1.13.1-12022-01-05
CVE-2021-45830 [MEDIUM] CWE-787 CVE-2021-45830: A heap-based buffer overflow vulnerability exists in HDF5 1.13.1-1 via H5F_addr_decode_len in /hdf5/
A heap-based buffer overflow vulnerability exists in HDF5 1.13.1-1 via H5F_addr_decode_len in /hdf5/src/H5Fint.c, which could cause a Denial of Service.
nvdosv
CVE-2021-45833P4MEDIUMCVSS 5.5v1.13.1-12022-01-05
CVE-2021-45833 [MEDIUM] CWE-787 CVE-2021-45833: A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 via the H5D__create_chunk_file_m
A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 via the H5D__create_chunk_file_map_hyper function in /hdf5/src/H5Dchunk.c, which causes a Denial of Service (context-dependent).
nvdosv
CVE-2020-10811P4MEDIUMCVSS 5.5≤ 1.12.02020-03-22
CVE-2020-10811 [MEDIUM] CWE-125 CVE-2020-10811: An issue was discovered in HDF5 through 1.12.0. A heap-based buffer over-read exists in the function
An issue was discovered in HDF5 through 1.12.0. A heap-based buffer over-read exists in the function H5O__layout_decode() located in H5Olayout.c. It allows an attacker to cause Denial of Service.
nvdosv
CVE-2021-45829P4MEDIUMCVSS 5.5v1.13.1-12022-01-03
CVE-2021-45829 [MEDIUM] CWE-404 CVE-2021-45829: HDF5 1.13.1-1 is affected by: segmentation fault, which causes a Denial of Service.
HDF5 1.13.1-1 is affected by: segmentation fault, which causes a Denial of Service.
nvd
CVE-2020-10812P4MEDIUMCVSS 5.5≤ 1.12.02020-03-22
CVE-2020-10812 [MEDIUM] CWE-476 CVE-2020-10812: An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exists in the function H5
An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exists in the function H5F_get_nrefs() located in H5Fquery.c. It allows an attacker to cause Denial of Service.
nvd
CVE-2020-10810P4MEDIUMCVSS 5.5≤ 1.12.02020-03-22
CVE-2020-10810 [MEDIUM] CWE-476 CVE-2020-10810: An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exists in the function H5
An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exists in the function H5AC_unpin_entry() located in H5AC.c. It allows an attacker to cause Denial of Service.
nvdosv
CVE-2025-2923P4LOWCVSS 3.3fixed in 1.14.6v1.14.0+6 more2025-03-28
CVE-2025-2923 [LOW] CWE-119 CVE-2025-2923: A vulnerability, which was classified as problematic, has been found in HDF5 up to 1.14.6. Affected
A vulnerability, which was classified as problematic, has been found in HDF5 up to 1.14.6. Affected by this issue is the function H5F_addr_encode_len of the file src/H5Fint.c. The manipulation of the argument pp leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.
nvd
CVE-2025-6750P4LOWCVSS 3.3v1.14.62025-06-27
CVE-2025-6750 [LOW] CWE-119 CVE-2025-6750: A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. Affected by thi
A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. Affected by this issue is the function H5O__mtime_new_encode of the file src/H5Omtime.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.
nvd
CVE-2025-2914P4LOWCVSS 3.3≤ 1.14.6v1.14.0+6 more2025-03-28
CVE-2025-2914 [LOW] CWE-119 CVE-2025-2914: A vulnerability classified as problematic has been found in HDF5 up to 1.14.6. This affects the func
A vulnerability classified as problematic has been found in HDF5 up to 1.14.6. This affects the function H5FS__sinfo_Srialize_Sct_cb of the file src/H5FScache.c. The manipulation of the argument sect leads to heap-based buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.
nvd
CVE-2025-6816P4LOWCVSS 3.3v1.14.62025-06-28
CVE-2025-6816 [LOW] CWE-119 CVE-2025-6816: A vulnerability classified as problematic was found in HDF5 1.14.6. This vulnerability affects the f
A vulnerability classified as problematic was found in HDF5 1.14.6. This vulnerability affects the function H5O__fsinfo_encode of the file /src/H5Ofsinfo.c. The manipulation leads to heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.
nvd
CVE-2025-6817P4LOWCVSS 3.3v1.14.62025-06-28
CVE-2025-6817 [LOW] CWE-400 CVE-2025-6817: A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affe
A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5C__load_entry of the file /src/H5Centry.c. The manipulation leads to resource consumption. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.
nvd
← Previous7 / 7