Out of Bound Read Vulnerability in HDF5 Library by The HDF Group
CVE-2018-14034

8.8HIGH

Key Information:

Vendor

Hdfgroup

Status
Vendor
CVE Published:
13 July 2018

What is CVE-2018-14034?

An out of bounds read vulnerability has been identified in the HDF5 Library version 1.8.20. This flaw exists in the H5O_pline_reset function within the H5Opline.c file, potentially allowing attackers to read sensitive data outside the intended memory boundaries. This could lead to unauthorized access to information that should be privileged.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.