PT-2025-23238 · Hdf5+1 · Hdf5+1

Chengsiyuan Yang

+7

·

Published

2025-05-30

·

Updated

2026-01-16

·

CVE-2025-44905

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions hdf5 version 1.14.6
Description A heap buffer overflow was discovered via the H5Z filter scaleoffset function.
Recommendations For version 1.14.6, consider disabling the H5Z filter scaleoffset function as a temporary workaround until a patch is available.

Exploit

Fix

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

AZL-62262
AZL-62267
CVE-2025-44905
ECHO-B7C2-EABE-D0FD
OESA-2026-1131
OESA-2026-1132
OESA-2026-1133
OESA-2026-1134
OESA-2026-1135

Affected Products

Debian
Hdf5