Heap-based Buffer Overflow in HDF5 Product by The HDF Group
CVE-2020-10809
5.5MEDIUM
What is CVE-2020-10809?
A heap-based buffer overflow has been identified in the HDF5 library, specifically within the Decompress() function found in decompress.c. This vulnerability arises when a specially crafted file is processed by the gif2h5 binary, potentially allowing an attacker to trigger a Denial of Service condition. Users of HDF5 versions up to 1.12.0 should be aware of this risk and take appropriate measures to secure their systems from potential exploitation.
