Vulnerabilities > Hdfgroup > Hdf5 > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-09-24 CVE-2018-17435 Out-of-bounds Read vulnerability in Hdfgroup Hdf5
A heap-based buffer over-read in H5O_attr_decode() in H5Oattr.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service via a crafted HDF5 file.
network
hdfgroup CWE-125
4.3
2018-09-24 CVE-2018-17434 Divide By Zero vulnerability in Hdfgroup Hdf5
A SIGFPE signal is raised in the function apply_filters() of h5repack_filters.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero.
network
low complexity
hdfgroup CWE-369
6.5
2018-09-24 CVE-2018-17433 Out-of-bounds Write vulnerability in Hdfgroup Hdf5
A heap-based buffer overflow in ReadGifImageDesc() in gifread.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service via a crafted HDF5 file.
network
hdfgroup CWE-787
4.3
2018-09-24 CVE-2018-17432 NULL Pointer Dereference vulnerability in Hdfgroup Hdf5
A NULL pointer dereference in H5O_sdspace_encode() in H5Osdspace.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service via a crafted HDF5 file.
network
hdfgroup CWE-476
4.3
2018-09-20 CVE-2018-17237 Divide By Zero vulnerability in Hdfgroup Hdf5
A SIGFPE signal is raised in the function H5D__chunk_set_info_real() of H5Dchunk.c in the HDF HDF5 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero.
network
low complexity
hdfgroup CWE-369
6.5
2018-09-20 CVE-2018-17234 Missing Release of Resource after Effective Lifetime vulnerability in Hdfgroup Hdf5
Memory leak in the H5O__chunk_deserialize() function in H5Ocache.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service (memory consumption) via a crafted HDF5 file.
network
low complexity
hdfgroup CWE-772
6.5
2018-09-20 CVE-2018-17233 Divide By Zero vulnerability in Hdfgroup Hdf5
A SIGFPE signal is raised in the function H5D__create_chunk_file_map_hyper() of H5Dchunk.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero.
network
low complexity
hdfgroup CWE-369
6.5
2018-09-04 CVE-2018-16438 Out-of-bounds Read vulnerability in Hdfgroup Hdf5 1.8.20
An issue was discovered in the HDF HDF5 1.8.20 library.
network
hdfgroup CWE-125
6.8
2018-08-21 CVE-2018-15671 Resource Exhaustion vulnerability in Hdfgroup Hdf5 1.10.2
An issue was discovered in the HDF HDF5 1.10.2 library.
network
hdfgroup CWE-400
4.3
2018-07-20 CVE-2018-14460 Out-of-bounds Read vulnerability in Hdfgroup Hdf5 1.8.20
An issue was discovered in the HDF HDF5 1.8.20 library.
network
hdfgroup CWE-125
6.8