Heap-Based Buffer Over-read Vulnerability in HDF5 Library by The HDF Group
CVE-2018-14035
8.8HIGH
What is CVE-2018-14035?
An issue was found in the HDF5 library, specifically in version 1.8.20, where a buffer over-read occurs in the function H5VM_memcpyvv located in H5VM.c. This vulnerability can potentially allow an attacker to access sensitive data beyond the intended memory bounds, posing risks to the confidentiality and integrity of affected applications.
