PT-2018-10396 · Hdf+3 · Hdf5+3

Published

2018-05-16

·

Updated

2023-08-09

·

CVE-2018-11206

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions HDF5 version 1.10.2
Description An out of bounds read was discovered in the H5O fill new decode and H5O fill old decode functions in the H5Ofill.c file of the HDF5 library. This issue could allow a remote denial of service or information disclosure attack.
Recommendations For HDF5 version 1.10.2, consider updating to a newer version that contains a fix for this issue, as using outdated library versions can pose security risks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Out of bounds Read

Weakness Enumeration

Related Identifiers

BDU:2025-12515
CVE-2018-11206
DLA-3522-1
OPENSUSE-SU-2022_1912-1
SUSE-SU-2022:1903-1
SUSE-SU-2022:1910-1
SUSE-SU-2022:1911-1
SUSE-SU-2022:1912-1
SUSE-SU-2022:1933-1
SUSE-SU-2022_1912-1

Affected Products

Astra Linux
Debian
Hdf5
Suse