VendorsHdfgrouphdf5all versions
Vulnerabilities

Hdfgroup The HDF Group HDF5

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

136CVEs
CVE-2016-4332
The library's failure to check if certain message types support a particular flag, the HDF5 1.8.16 library will cast the structure to an alternative structure and then assign to fields that aren't supported by the message type and the library will write outside the bounds of the heap buffer. This can lead to code execution under the context of the library.
Published 2016-11-18 · Modified
8.6EPSS 0.008
CVE-2016-4330
In the HDF5 1.8.16 library's failure to check if the number of dimensions for an array read from the file is within the bounds of the space allocated for it, a heap-based buffer overflow will occur, potentially leading to arbitrary code execution.
Published 2016-11-18 · Modified
8.6EPSS 0.008
CVE-2016-4331
When decoding data out of a dataset encoded with the H5Z_NBIT decoding, the HDF5 1.8.16 library will fail to ensure that the precision is within the bounds of the size leading to arbitrary code execution.
Published 2016-11-18 · Modified
8.6EPSS 0.008
CVE-2016-4333
The HDF5 1.8.16 library allocating space for the array using a value from the file has an impact within the loop for initializing said array allowing a value within the file to modify the loop's terminator. Due to this, an aggressor can cause the loop's index to point outside the bounds of the array when initializing it.
Published 2016-11-18 · Modified
8.6EPSS 0.006
CVE-2018-11206
An out of bounds read was discovered in H5O_fill_new_decode and H5O_fill_old_decode in H5Ofill.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service or information disclosure attack.
Published 2018-05-16 · Modified
8.1EPSS 0.028
CVE-2018-11205
A out of bounds read was discovered in H5VM_memcpyvv in H5VM.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service or information disclosure attack.
Published 2018-05-16 · Modified
8.1EPSS 0.024
CVE-2025-2153
HDF5 h5 File H5SM.c H5SM_delete heap-based overflow
Published 2025-03-10 · Analyzed
8.1EPSS 0.005
CVE-2018-13875
An issue was discovered in the HDF HDF5 1.8.20 library. There is an out-of-bounds read in the function H5VM_memcpyvv in H5VM.c.
Published 2018-07-10 · Modified
7.8EPSS 0.009
CVE-2022-26061
A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-08-22 · Modified
7.8EPSS 0.006
CVE-2022-25972
An out-of-bounds write vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-08-22 · Modified
7.8EPSS 0.006
CVE-2022-25942
An out-of-bounds read vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-08-22 · Modified
7.8EPSS 0.006
CVE-2025-2308
HDF5 Scale-Offset Filter H5Z__scaleoffset_decompress_one_byte heap-based overflow
Published 2025-03-14 · Analyzed
7.8EPSS 0.004
CVE-2025-2310
HDF5 Metadata Attribute Decoder H5MM_strndup heap-based overflow
Published 2025-03-14 · Analyzed
7.8EPSS 0.004
CVE-2025-6516
HDF5 H5Fint.c H5F_addr_decode_len heap-based overflow
Published 2025-06-23 · Analyzed
7.8EPSS 0.004
CVE-2026-26200
HDF5 Affected by H5T__conv_struct_opt Heap Buffer Overflow
Published 2026-02-19 · Modified
7.8EPSS 0.004
CVE-2025-2309
HDF5 Type Conversion Logic H5T__bit_copy heap-based overflow
Published 2025-03-14 · Analyzed
7.8EPSS 0.004
CVE-2025-6818
HDF5 H5Ochunk.c H5O__chunk_protect heap-based overflow
Published 2025-06-28 · Analyzed
7.8EPSS 0.003
CVE-2025-6857
HDF5 H5Gnode.c H5G__node_cmp3 stack-based overflow
Published 2025-06-29 · Analyzed
7.8EPSS 0.003
CVE-2025-6856
HDF5 H5FL.c H5FL__reg_gc_list use after free
Published 2025-06-29 · Analyzed
7.8EPSS 0.002
CVE-2026-34734
HDF5: H5T__conv_struct Use After Free
Published 2026-04-09 · Modified
7.8EPSS 0.002
CVE-2021-37501
Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of service via h5tools_str_sprint in /hdf5/tools/lib/h5tools_str.c.
Published 2023-02-03 · Modified
7.5EPSS 0.015
CVE-2024-32609
HDF5 Library through 1.14.3 allows stack consumption in the function H5E_printf_stack in H5Eint.c.
Published 2024-05-09 · Analyzed
7.5EPSS 0.008
CVE-2026-26197
Array full size, element count, and element size are not checked to make sure they match in H5Odtype.c
Published 2026-07-20 · Analyzed
7.5EPSS 0.004
CVE-2024-32624
HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__conv_ref in H5Tconv.c), resulting in the corruption of the instruction pointer.
Published 2024-05-09 · Analyzed
7.4EPSS 0.006
CVE-2024-32612
HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5HL__fl_deserialize in H5HLcache.c, resulting in the corruption of the instruction pointer, a different vulnerability than CVE-2024-32613.
Published 2024-05-09 · Analyzed
7.4EPSS 0.003
CVE-2024-32616
HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5O__dtype_encode_helper in H5Odtype.c.
Published 2024-05-09 · Analyzed
7.4EPSS 0.003
CVE-2024-32613
HDF5 Library through 1.14.3 contains a heap-based buffer over-read in the function H5HL__fl_deserialize in H5HLcache.c, a different vulnerability than CVE-2024-32612.
Published 2024-05-09 · Analyzed
7.4EPSS 0.002
CVE-2024-32620
HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5F_addr_decode_len in H5Fint.c, resulting in the corruption of the instruction pointer.
Published 2024-05-09 · Analyzed
7.4EPSS 0.002
CVE-2024-32618
HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__get_native_type in H5Tnative.c, resulting in the corruption of the instruction pointer.
Published 2024-05-09 · Analyzed
7.4EPSS 0.002
CVE-2024-32619
HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T_copy_reopen in H5T.c, resulting in the corruption of the instruction pointer.
Published 2024-05-09 · Analyzed
7.4EPSS 0.002
CVE-2024-29165
HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_fletcher32, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
Published 2024-05-09 · Analyzed
7.4EPSS 0.002
CVE-2024-29160
HDF5 through 1.14.3 contains a heap buffer overflow in H5HG__cache_heap_deserialize, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
Published 2024-05-09 · Analyzed
7.4EPSS 0.002
CVE-2024-29162
HDF5 through 1.13.3 and/or 1.14.2 contains a stack buffer overflow in H5HG_read, resulting in denial of service or potential code execution.
Published 2024-05-09 · Analyzed
7.4EPSS 0.002
CVE-2024-29163
HDF5 through 1.14.3 contains a heap buffer overflow in H5T__bit_find, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
Published 2024-05-09 · Analyzed
7.4EPSS 0.002
CVE-2024-29158
HDF5 through 1.14.3 contains a stack buffer overflow in H5FL_arr_malloc, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
Published 2024-05-09 · Analyzed
7.4EPSS 0.002
CVE-2018-11202
A NULL pointer dereference was discovered in H5S_hyper_make_spans in H5Shyper.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.
Published 2018-05-16 · Modified
6.5EPSS 0.019
CVE-2018-11207
A division by zero was discovered in H5D__chunk_init in H5Dchunk.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.
Published 2018-05-16 · Modified
6.5EPSS 0.018
CVE-2018-17434
A SIGFPE signal is raised in the function apply_filters() of h5repack_filters.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service attack.
Published 2018-09-24 · Modified
6.5EPSS 0.018
CVE-2018-17233
A SIGFPE signal is raised in the function H5D__create_chunk_file_map_hyper() of H5Dchunk.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service attack.
Published 2018-09-20 · Modified
6.5EPSS 0.018
CVE-2018-17438
A SIGFPE signal is raised in the function H5D__select_io() of H5Dselect.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service attack.
Published 2018-09-24 · Modified
6.5EPSS 0.017
← Prev2 / 4Next →