Heap Buffer Overflow Vulnerability in HDF5 by The HDF Group
CVE-2024-29160
7.4HIGH
What is CVE-2024-29160?
The HDF5 library versions up to 1.14.3 are impacted by a heap buffer overflow vulnerability located in the H5HG__cache_heap_deserialize function. This flaw can lead to corruption of the instruction pointer, potentially resulting in denial of service or unauthorized code execution. Users of affected versions are strongly advised to upgrade to version 1.14.4 to mitigate risks associated with this security issue.